First published: Wed Sep 01 2021(Updated: )
XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-what-where condition vulnerability caused during the application's memory allocation process. This may cause the memory management functions to become mismatched resulting in local application denial of service in the context of the current user.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe XMP Toolkit Software Development Kit | <=2020.1 | |
Debian GNU/Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36057 is classified as a high severity vulnerability due to its potential to cause local application denial of service.
To fix CVE-2021-36057, update to the latest version of the Adobe XMP Toolkit SDK or apply any available security patches.
CVE-2021-36057 affects Adobe XMP Toolkit SDK versions 2020.1 and earlier and Debian Linux version 10.0.
CVE-2021-36057 is not generally considered to be exploitable remotely; it primarily affects local application instances.
CVE-2021-36057 involves a write-what-where condition during memory allocation, leading to potential mismatched memory management functions.