Information disclosure in Adobe Digital Editions - CVE-2016-7889
Published: December 14, 2016
Adobe Digital Editions
Detailed vulnerability description
The vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists due to unknown error when parsing specially crafted XML entities. A remote attacker can create a specially crafted XML file and obtain potentially sensitive information
Successful exploitation of the vulnerability may result information disclosure.
How to mitigate CVE-2016-7889
Windows platform:
https://www.adobe.com/solutions/ebook/digital-editions/download.html
Macintosh platform:
https://www.adobe.com/solutions/ebook/digital-editions/download.html
Android platform:
https://play.google.com/store/apps/details?id=com.adobe.digitaleditions