CVE-2021-42530

unknown
Published — · Modified —
CVSS v3
CVSS v2
VIR risk

Description

XMP Toolkit SDK version 2021.07 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2021-42530

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed2.6.0-1
debian debianbullseyefixed2.5.2-1+deb11u1
debian debianforkyfixed2.6.0-1
debian debiansidfixed2.6.0-1
debian debiantrixiefixed2.6.0-1

References

Verify integrity in audit chain (admin only). AS-IS.