ZDI-23-390: Adobe Digital Editions PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Digital Editions. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-390?
The severity of ZDI-23-390 is considered high due to the potential for remote code execution.
How do I fix ZDI-23-390?
To fix ZDI-23-390, update Adobe Digital Editions to the latest version provided by Adobe.
What are the potential impacts of ZDI-23-390?
The potential impacts of ZDI-23-390 include unauthorized access to system resources and execution of malicious code.
Do I need to take any action if I use Adobe Digital Editions?
Yes, users of Adobe Digital Editions should update their software to mitigate the risks associated with ZDI-23-390.
Is user interaction required to exploit ZDI-23-390?
Yes, user interaction is required for ZDI-23-390, as the target must visit a malicious webpage or open a malicious file.