PT-2002-2023 · Adobe · Ebook Reader
Published
2002-08-31
·
Updated
2008-09-05
·
CVE-2002-1017
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Adobe eBook Reader versions 2.1 through 2.2
Description:
The issue allows a user to copy eBooks to other systems by exploiting the backup feature. This is achieved by capturing the encryption Challenge and using the appropriate hash function to generate the activation code.
Recommendations:
For Adobe eBook Reader versions 2.1 through 2.2, consider restricting the use of the backup feature to minimize the risk of eBook copying.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ebook Reader