Bulletin ID
Security Updates Available for Adobe Framemaker | APSB18-37
|
Date Published |
Priority |
---|---|---|
APSB18-37 |
October 09, 2018 |
3 |
Summary
Adobe has released a security update for Adobe Framemaker. This update resolves an insecure library loading vulnerability in the installer that could lead to privilege escalation.
Affected Versions
Product |
Version |
Platform |
---|---|---|
Adobe Framemaker |
14.0.361 and below |
Windows |
Solution
Adobe categorizes these updates with the following priority ratings and recommends users update their installation to the newest version:
Product |
Version |
Platform |
Priority |
Availability |
---|---|---|---|---|
Adobe Framemaker |
2019 Release |
Windows |
3 |
Vulnerability details
Vulnerability Category |
Vulnerability Impact |
Severity |
CVE Numbers |
---|---|---|---|
Insecure Library Loading (DLL hijacking) |
Privilege Escalation |
Important |
CVE-2018-15974 |
Acknowledgments
Adobe would like to thank Kushal Arvind Shah of Fortinet’s Fortiguard Labs for reporting this issue and for working with Adobe to help protect our customers.
Revisions
October 23, 2018: Updated the affected version from 1.0.5.1 to 14.0.361 and below.