Advisory

Adobe releases February patches including critical fixes in Acrobat/Reader and Commerce/Magento

Take action: Time to patch your Adobe Acrobat and Reader, as well as your Commerce/Magento platforms. All will be attacked fairly soon.


Learn More

Adobe has issued patches for security flaws across multiple products including the widely used Adobe Acrobat and Reader, Adobe Commerce and Magento Open Source, Substance 3D Painter, and FrameMaker.

The update for Adobe Acrobat and Reader covers at least 13 security defects including 5 self-classified as critical (albeit with a CVSS score lower than 9). Vulnerable versions and fixes are as follows:

Product

Track

Updated Versions

Platform

Acrobat DC

Continuous

23.008.20533

Windows and macOS

Acrobat Reader DC

Continuous

23.008.20533

Windows and macOS

Acrobat 2020

Classic 2020           

20.005.30574

Windows  and macOS  

Acrobat Reader 2020

Classic 2020 

20.005.30574
 

Windows  and macOS 

Adobe Commerce  and Magento Open source have been patched for five vulnerabilities, two of them critical. Vulnerable versions and fixes are as follows:

Product

Track

Updated Versions

Platform

 Adobe Commerce 2.4.6-p3 and earlier
2.4.5-p5 and earlier
2.4.4-p6 and earlier
2.4.3-ext-5 and earlier*
2.4.2-ext-5 and earlier*
2.4.1-ext-5 and earlier*
2.4.0-ext-5 and earlier*
2.3.7-p4-ext-5 and earlier*
2.4.6-p4 for 2.4.6-p3 and earlier
2.4.5-p6 for 2.4.5-p5 and earlier
2.4.4-p7 for 2.4.4-p6 and earlier
2.4.3-ext-6 for 2.4.3-ext-5 and earlier*
2.4.2-ext-6 for 2.4.2-ext-5 and earlier*
2.4.1-ext-6 for 2.4.1-ext-5 and earlier*
2.4.0-ext-6 for 2.4.0-ext-5 and earlier*
2.3.7-p4-ext-6 for 2.3.7-p4-ext-5 and earlier*

All

Magento Open Source 2.4.6-p3 and earlier
2.4.5-p5 and earlier
2.4.4-p6 and earlier
2.4.6-p4 for 2.4.6-p3 and earlier
2.4.5-p6 for 2.4.5-p5 and earlier
2.4.4-p7 for 2.4.4-p6 and earlier

All

Adobe also patched vulnerabilities in Adobe Substance 3D Painter, Adobe FrameMaker Publishing Server, Adobe Audition, and Adobe Substance 3D Designer.

Adobe releases February patches including critical fixes in Acrobat/Reader and Commerce/Magento