CVE-2021-42528
—CVSS 3.1
5.5 medium
EPSS
2%p79
Published
()
Modified
Description
XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
In the news0 stories
No ingested article mentions this CVE yet.