PT-2021-4670 · Adobe+4 · Xmp Toolkit Sdk+4

Published

2021-08-17

·

Updated

2025-08-04

·

CVE-2021-36051

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions XMP Toolkit SDK versions 2020.1 and earlier
Description The issue is related to a buffer overflow vulnerability in the XMP Toolkit SDK, potentially allowing arbitrary code execution in the context of the current user. Exploitation requires user interaction, where a victim must open a specially-crafted file. This vulnerability is associated with a buffer overflow in the heap.
Recommendations For XMP Toolkit SDK versions 2020.1 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting the opening of specially-crafted files to minimize the risk of exploitation.

Heap Based Buffer Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-05363
CVE-2021-36051
DLA-3585-1
DLA-4264-1
MGASA-2022-0236
USN-5483-1

Affected Products

Astra Linux
Debian
Linuxmint
Ubuntu
Xmp Toolkit Sdk