Описание
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.4.5-2ubuntu0.1 |
| devel | not-affected | 2.6.1-2 |
| esm-infra/bionic | released | 2.4.5-2ubuntu0.1 |
| esm-infra/focal | released | 2.5.1-1ubuntu0.1 |
| esm-infra/xenial | needed | |
| focal | released | 2.5.1-1ubuntu0.1 |
| impish | released | 2.5.2-1ubuntu0.21.10.1 |
| jammy | released | 2.5.2-1ubuntu0.22.04.1 |
| kinetic | not-affected | 2.6.1-2 |
| lunar | not-affected | 2.6.1-2 |
Показывать по
Ссылки на источники
7.1 High
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer derefe ...
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Уязвимость программного обеспечения Adobe XMP-Toolkit-SDK, связанная с разыменованием указателя NULL, позволяющая нарушителю вызвать отказ в обслуживании
7.1 High
CVSS2
5.5 Medium
CVSS3