XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-what-where condition vulnerability caused during the application's memory allocation process. This may cause the memory management functions to become mismatched resulting in local application denial of service in the context of the current user.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/xmpcore/apsb21-65.html | Patch Vendor Advisory |
https://lists.debian.org/debian-lts-announce/2023/09/msg00032.html | Mailing List |
https://helpx.adobe.com/security/products/xmpcore/apsb21-65.html | Patch Vendor Advisory |
https://lists.debian.org/debian-lts-announce/2023/09/msg00032.html | Mailing List |
Configurations
History
21 Nov 2024, 06:13
Type | Values Removed | Values Added |
---|---|---|
References | () https://helpx.adobe.com/security/products/xmpcore/apsb21-65.html - Patch, Vendor Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2023/09/msg00032.html - Mailing List |
16 Feb 2024, 19:18
Type | Values Removed | Values Added |
---|---|---|
First Time |
Debian
Debian debian Linux |
|
CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | |
References | (MLIST) https://lists.debian.org/debian-lts-announce/2023/09/msg00032.html - Mailing List |
07 Nov 2023, 03:36
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : unknown |
26 Sep 2023, 01:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 4.0 |
Information
Published : 2021-09-01 15:15
Updated : 2024-11-21 06:13
NVD link : CVE-2021-36057
Mitre link : CVE-2021-36057
CVE.ORG link : CVE-2021-36057
JSON object : View
Products Affected
adobe
- xmp_toolkit_software_development_kit
debian
- debian_linux
CWE
CWE-123
Write-what-where Condition