First published: Mon Oct 04 2021(Updated: )
XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a specially-crafted .cpp file.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Xmp Toolkit Software Development Kit | <=2020.1 | |
Debian Debian Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36051 refers to a buffer overflow vulnerability in the XMP Toolkit SDK that could allow arbitrary code execution.
CVE-2021-36051 affects XMP Toolkit SDK version 2020.1 and earlier.
The severity of CVE-2021-36051 is high, with a CVSS score of 7.8.
Exploitation of CVE-2021-36051 requires user interaction, where a victim must open a specially-crafted .cpp file.
Yes, Adobe has released a security advisory and recommends updating to the latest version of XMP Toolkit SDK to address CVE-2021-36051.