Lucene search

K
osvGoogleOSV:CVE-2021-42532
HistoryMay 02, 2022 - 11:15 p.m.

CVE-2021-42532

2022-05-0223:15:07
Google
osv.dev
5
xmp toolkit sdk
buffer overflow
arbitrary code execution
user interaction
crafted file

AI Score

7.5

Confidence

High

EPSS

0.062

Percentile

93.6%

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file.

AI Score

7.5

Confidence

High

EPSS

0.062

Percentile

93.6%