Depending on the user's actions, this issue could result in information disclosure, installation of malicious software, or even elevation of privileges.

We recommend updating your software. Adobe has addressed this issue in the upcoming release of Photoshop version 24.

CVE-2017-7091 Adobe has released a patch for the CVE-2017-7091 issue. The update addresses issues with uninitialized memory corruption vulnerability. This update will be available in the upcoming release of Photoshop version 24. We recommend updating your software as soon as possible. Adobe has addressed this issue in the upcoming release of Photoshop version 24.

CVE-2017-7093 Adobe has released a patch for the CVE-2017-7093 issue. The update addresses a memory corruption vulnerability in the parsing code of certain specially crafted files. This update will be available in the upcoming release of Photoshop version 24. We recommend updating your software as soon as possible. Adobe has addressed this issue in the upcoming release of Photoshop version 24.

CVE-2017-7094 Adobe has released a patch for the CVE-2017-7094 issue. The update addresses a memory corruption vulnerability in the parsing code. This update will be available in the upcoming release of Photoshop version 24. We recommend updating your software as soon as possible. Adobe has addressed this issue in the upcoming release of Photoshop version 24.

CVE-2017-7095 Adobe has released a patch for the CVE-2017-7095 issue

Adobe Photoshop CS6 and CC: Information Disclosure Using Color Profiles

Adobe is aware of an issue where users of version 6.x and 7.x of Adobe Photoshop CS6 and Adobe Photoshop CC may be able to access information about other users in the same system in some cases, depending on the order that files are opened by the affected devices.
To make sure your system is protected, we recommend disabling "All Users" network sharing on all computers using Adobe Photoshop CS6 or Adobe Photoshop CC.

Adobe has released a patch for the CVE-2017-7095 issue

The Adobe Creative Cloud Desktop Application has been updated to resolve the CVE-2017-7095 issue.

Adobe Reader and Acrobat Software Installed on the Target System

On January 11, 2018, Adobe released an update to Adobe Reader and Acrobat software.

The update addresses a security vulnerability in the parsing code of certain specially crafted files. This update will be available in the upcoming release of Reader and Acrobat version 2017.011.20082.
We recommend updating your software as soon as possible. Adobe has addressed this issue in the upcoming release of Reader and Acrobat version 2017.011.20082

Adobe has released a patch for the CVE-2017-7094 issue on December 27, 2017. The update addresses a memory corruption vulnerability in the parsing code of certain specially crafted files. This update will be available in the upcoming release of Reader and Acrobat version 2017.011.20081 or later versions. We recommend updating your software as soon as possible

Adobe After Effects CC 2017 (13.2)

Adobe has released security updates for Adobe After Effects CC 2017 (13.2) to address multiple vulnerabilities, including one critical vulnerability.

CVE-2017-7096 Adobe has released a patch for the CVE-2017-7096 issue. The update addresses an elevation of privileges vulnerability in the way that they handle file associations. This update will be available in the upcoming release of Photoshop version 24. We recommend updating your software as soon as possible. Adobe has addressed this issue in the upcoming release of Photoshop version 24.

Timeline

Published on: 09/16/2022 18:15:00 UTC
Last modified on: 09/20/2022 18:46:00 UTC

References