Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-38210

Опубликовано: 10 авг. 2023
Источник: redhat
CVSS3: 5.5

Описание

Adobe XMP Toolkit versions 2022.06 is affected by a Uncontrolled Resource Consumption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

An uncontrolled resource consumption flaw was found in the Adobe XMP Toolkit. This issue may allow an unauthenticated attacker to send a malicious file, which when opened by a user, could lead to an application denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat BPM Suite 6xmpcoreOut of support scope
Red Hat Fuse 7xmpcoreOut of support scope
Red Hat JBoss BRMS 6xmpcoreOut of support scope
Red Hat JBoss Fuse 6xmpcoreOut of support scope
Red Hat JBoss Fuse Service Works 6xmpcoreOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2231135xmpcore: Uncontrolled Resource Consumption

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
больше 2 лет назад

Adobe XMP Toolkit versions 2022.06 is affected by a Uncontrolled Resource Consumption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 5.5
github
больше 2 лет назад

Adobe XMP Toolkit versions 2022.06 is affected by a Uncontrolled Resource Consumption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 5.5
fstec
больше 2 лет назад

Уязвимость программного обеспечения Adobe XMP-Toolkit-SDK, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

5.5 Medium

CVSS3