XMP Toolkit SDK versions 2020.1 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
| Software | From | Fixed in |
|---|---|---|
| adobe / xmp_toolkit_software_development_kit | - | 2020.1.x |
| debian / debian_linux | 10.0 | 10.0.x |