An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. Adobe Digital Editions parses crafted XML files in an unsafe manner, which could lead to sensitive information disclosure.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/101839 | vdb entry third party advisory |
https://helpx.adobe.com/security/products/Digital-Editions/apsb17-39.html | vendor advisory |
http://www.securitytracker.com/id/1039798 | vdb entry third party advisory |