Lucene search

K
osvGoogleOSV:CVE-2021-36056
HistorySep 01, 2021 - 3:15 p.m.

CVE-2021-36056

2021-09-0115:15:10
Google
osv.dev
4
xmp toolkit
buffer overflow
cve-2021-36056
arbitrary code execution
user interaction
crafted file
software

AI Score

7.5

Confidence

High

EPSS

0.007

Percentile

80.6%

XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file.

AI Score

7.5

Confidence

High

EPSS

0.007

Percentile

80.6%