Alert GCSA-23162 - Adobe Security Bulletin - Dicembre 2023


******************************************************************

Alert ID: GCSA-23162
Data: 13 Dicembre 2023
Titolo: Adobe Security Bulletin - Dicembre 2023

******************************************************************

:: Descrizione del problema

Adobe ha rilasciato i seguenti aggiornamenti di sicurezza

APSB23-67: Security Updates Available for Adobe Prelude
APSB23-68: Security Updates Available for Adobe Illustrator
APSB23-70: Security Update Available for Adobe InDesign
APSB23-71: Security updates available for Dimension
APSB23-72: Security updates available for Adobe Experience Manager
APSB23-73: Security updates available for Substance 3D Stager
APSB23-74: Security updates available for Substance 3D Sampler
APSB23-75: Security Updates Available for Adobe After Effects
APSB23-76: Security updates available for Substance 3D Designer

Maggiori informazioni sono disponibili alla sezione "Riferimenti".


:: Software interessato

Adobe Prelude 22.6 e versioni precedenti
Illustrator 2024 28.0 e versioni precedenti
Illustrator 2023 27.9 e versioni precedenti
Adobe InDesign ID19.0 e versioni precedenti
Adobe InDesign ID17.4.2 e versioni precedenti
Adobe Dimension 3.4.10 e versioni precedenti
Adobe Experience Manager (AEM) AEM Cloud Service (CS)
Adobe Experience Manager (AEM) 6.5.18.0 e versioni precedenti
Adobe Substance 3D Stager 2.1.1 e versioni precedenti
Adobe Substance 3D Sampler 4.2.1 e versioni precedenti
Adobe After Effects 24.0.3 e versioni precedenti
Adobe After Effects 23.6.0 e versioni precedenti
Adobe Substance 3D Designer 13.0.0 e versioni precedenti


:: Impatto

Remote Code Execution
Denial of Service
Cross-Site Scripting
Information Disclosure
Security Restriction Bypass


:: Soluzioni

Aggiornare i software alle ultime versioni

Adobe Prelude 22.6.1
Illustrator 2024 28.1
Illustrator 2023 27.9.1
Adobe InDesign ID19.1
Adobe InDesign ID18.5.1
Adobe Dimension 3.4.11
Adobe Experience Manager (AEM) AEM Cloud Service (CS) Release 2023.11
Adobe Experience Manager (AEM) 6.5.19.0
Adobe Substance 3D Stager 2.1.3
Adobe Substance 3D Sampler 4.2.2
Adobe After Effects 24.1
Adobe After Effects 23.6.2
Adobe Substance 3D Designer 13.1.0


:: Riferimenti

Adobe Security Bulletins e Advisories
https://helpx.adobe.com/security/security-bulletin.html
https://helpx.adobe.com/security/products/prelude/apsb23-67.html
https://helpx.adobe.com/security/products/illustrator/apsb23-68.html
https://helpx.adobe.com/security/products/indesign/apsb23-70.html
https://helpx.adobe.com/security/products/dimension/apsb23-71.html
https://helpx.adobe.com/security/products/experience-manager/apsb23-72.html
https://helpx.adobe.com/security/products/substance3d_stager/apsb23-73.html
https://helpx.adobe.com/security/products/substance3d-sampler/apsb23-74.html
https://helpx.adobe.com/security/products/after_effects/apsb23-75.html
https://helpx.adobe.com/security/products/substance3d_designer/apsb23-76.html

Mitre CVE
I riferimenti CVE sono disponibili nell'advisory originale.


GARR CERT Security Alert - subscribe/unsubscribe:
http://www.cert.garr.it/alert/ricevi-gli-alert-di-cert
-----BEGIN PGP SIGNATURE-----

iD8DBQFleXT6wZxMk2USYEIRCAVzAJ44q/3M8nkCTTzuc3syQkLn+g+87QCggYQk
BzlSICexLMiSKfCUGzIC1SE=
=Fnc1
-----END PGP SIGNATURE-----