CVE-2017-17069: Amazon Audible

High severity, CVSS 7.8. EPSS: 1.6% chance of exploitation in the next 30 days.

ActiveSetupN.exe in Amazon Audible for Windows before November 2017 allows attackers to execute arbitrary DLL code if ActiveSetupN.exe is launched from a directory where an attacker has already created a Trojan horse dwmapi.dll file.

Affected products

  • Amazon Audible: before november2017 (fixed in november2017)

Published 2017-12-06. Last modified 2026-06-17.