Unrated severityNVD Advisory· Published Apr 8, 2025· Updated Apr 8, 2025
XMPWorker | Out-of-bounds Read (CWE-125)
CVE-2025-30305
Description
XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products
2- Range: <=2023.12
- Adobe/XMPWorkerv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- helpx.adobe.com/security/products/xmpcore/apsb25-34.htmlmitrevendor-advisory
News mentions
0No linked articles in our index yet.