Vulnerability CVE-2021-42528


Published: 2022-05-02   Modified: 2022-05-03

Description:
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Type:

CWE-476

(NULL Pointer Dereference)

 References:
https://helpx.adobe.com/security/products/xmpcore/apsb21-108.html

Copyright 2026, cxsecurity.com

 

Back to Top