Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
XMPWorker | Out-of-bounds Read (CWE-125)
Vulnerability Description
XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Vulnerability Type
跨界内存读
Vulnerability Title
Adobe XMP Toolkit 缓冲区错误漏洞
Vulnerability Description
Adobe XMP Toolkit是美国奥多比(Adobe)公司的一个工具包。用于将 Xmp 功能集成到产品或解决方案中。 Adobe XMP Toolkit 2023.12及之前版本存在缓冲区错误漏洞,该漏洞源于越界读取,可能导致敏感内存泄露。
CVSS Information
N/A
Vulnerability Type
N/A