XMP Toolkit SDK Use After Free Vulnerability In ReadingXMPNewDOM Could Lead To Arbitrary Code Execution
CVE-2021-36055
7.8HIGH
What is CVE-2021-36055?
XMP Toolkit SDK versions 2020.1 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Version(s)
XMP Toolkit <= 2020.1
XMP Toolkit <= unspecified