Security Updates Available for Adobe Digital Editions | APSB18-27
Adobe has released a security update for Adobe Digital Editions. This update resolves critical vulnerabilities. Successful exploitation could lead to arbitrary code execution in the context of the current user.
Adobe categorizes these updates with the following priority ratings and recommends users update their installation to the newest version:
Product | Version | Platform | Priority | Availability |
Adobe Digital Editions | 4.5.9 | Windows | 3 | Download Page |
Macintosh | 3 | Download Page | ||
iOS | 3 | iTunes |
Note:
- Customers can download the update from the Adobe Digital Editions download page, or utilize the product’s update mechanism when prompted.
- For more information, please reference the release notes.
Vulnerability Category | Vulnerability Impact | Severity | CVE Numbers |
Heap overflow | Arbitrary Code Execution | Critical | CVE-2018-12813 CVE-2018-12814 CVE-2018-12823 |
Out of bounds read | Information Disclosure | Important | CVE-2018-12816 CVE-2018-12818 CVE-2018-12819 CVE-2018-12820 CVE-2018-12821 |
Use after free | Arbitrary Code Execution | Critical | CVE-2018-12822 |