Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/Digital-Editions/apsb16-45.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/94879 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1037466 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2016-12-14 22:59
Updated : 2016-12-22 15:25
NVD link : CVE-2016-7889
Mitre link : CVE-2016-7889
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
adobe
- digital_editions