Lucene search

K
osvGoogleOSV:CVE-2021-36045
HistorySep 01, 2021 - 3:15 p.m.

CVE-2021-36045

2021-09-0115:15:10
Google
osv.dev
9
xmp toolkit sdk
out-of-bounds read
memory disclosure
aslr bypass
exploitation
user interaction
malicious file

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

59.9%

XMP Toolkit SDK versions 2020.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

59.9%