CVE-2017-2973 is a critical heap overflow vulnerability affecting Adobe Digital Editions versions 4.5.3 and earlier. This flaw allows for unauthenticated, remote arbitrary code execution with high impact on confidentiality, integrity, and availability. While no public exploit code or active exploitation has been confirmed, its high CVSS score of 9.8 and FAUCET Risk Score of 90/100 indicate significant potential danger. Community discussion and media coverage, though limited, suggest awareness of this vulnerability. Organizations using affected versions should prioritize patching to mitigate this severe risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.5.3CPE matchmatch criteria | cpe:2.3:a:adobe:digital_editions:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.