XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
History

Mon, 03 Nov 2025 20:30:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2022-05-02T22:24:04.931Z

Updated: 2025-11-03T19:26:23.079Z

Reserved: 2021-10-15T00:00:00.000Z

Link: CVE-2021-42528

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-05-02T23:15:07.730

Modified: 2025-11-03T20:15:50.557

Link: CVE-2021-42528

cve-icon Redhat

No data.