PT-2021-22708 · Adobe+4 · Xmp Toolkit Sdk+4

Published

2021-09-01

·

Updated

2025-08-04

·

CVE-2021-39847

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: XMP Toolkit SDK versions 2020.1 and earlier
Description: The issue is a stack-based buffer overflow that can potentially result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction, where a victim must open a crafted file.
Recommendations: For XMP Toolkit SDK versions 2020.1 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2021-39847
DLA-3585-1
DLA-4264-1
MGASA-2022-0236
USN-5483-1

Affected Products

Astra Linux
Debian
Linuxmint
Ubuntu
Xmp Toolkit Sdk