QID 376011

QID 376011: Adobe XMP Toolkit SDK Multiple Vulnerabilities ( APSB21-108)

Adobe XMP Toolkit SDK provides documentation and libraries for working with the XMP data model; for reading, writing and manipulating XMP metadata in various file formats.
Affected Versions:
Adobe XMP Toolkit SDK 2021.07 and earlier versions on all platforms

Successful exploitation could lead to arbitrary code execution and application denial of service.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.4 severity.
  • Solution
    The vendor has released a patch for Adobe XMP Toolkit SDK 2021.07
    For more information please visit APSB21-108
    Software Advisories
    Advisory ID Software Component Link
    APSB21-108 URL Logo helpx.adobe.com/security/products/xmpcore/apsb21-108.html