XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
| Software | From | Fixed in |
|---|---|---|
| adobe / xmp_toolkit_software_development_kit | - | 2021.07.x |
| debian / debian_linux | 10.0 | 10.0.x |