VDB

CVE-2021-36053

CVE-2021-36053 PUBLISHED CVSS 3.299999952316284 LOW

XMP Toolkit SDK versions 2020.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

EPSS 0.30% · 53.2th percentile

Risk Scores

CVSS v3.1
3.299999952316284
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
EPSS Score
0.30%
53.2th percentile

Affected Products

VendorProductVersions
adobexmp_toolkit_software_development_kit0
debiandebian_linux10.0
AdobeXMP Toolkitunspecified, unspecified

Timeline

  • Sep 1, 2021 CVE Published
  • Sep 2, 2021 EPSS Score
  • Sep 9, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 21, 2022 EPSS Score
  • Jun 18, 2022 EPSS Score
  • Aug 16, 2022 EPSS Score
  • Dec 10, 2022 EPSS Score
  • Feb 6, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›