CVE-2025-30306

Source
https://cve.org/CVERecord?id=CVE-2025-30306
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-30306.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-30306
Downstream
Published
2025-04-08T18:22:27.624Z
Modified
2026-07-22T04:01:46.747363Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N CVSS Calculator
Summary
XMPWorker | Out-of-bounds Read (CWE-125)
Details

XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Database specific
{
    "cna_assigner": "adobe",
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "last_affected": "2023.12"
                }
            ]
        }
    ],
    "cwe_ids": [
        "CWE-125"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/30xxx/CVE-2025-30306.json"
}
References

Affected packages

Git / github.com/adobe/xmp-toolkit-sdk

Affected ranges

Type
GIT
Repo
https://github.com/adobe/xmp-toolkit-sdk
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "cpe": "cpe:2.3:a:adobe:xmp_toolkit_software_development_kit:*:*:*:*:*:*:*:*",
    "source": "CPE_RANGE",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "fixed": "2025.03"
        }
    ]
}

Affected versions

v2020.*
v2020.1
v2021.*
v2021.07
v2021.08
v2021.10
v2022.*
v2022.02
v2022.06
v2023.*
v2023.07
v2023.12

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-30306.json"
vanir_signatures_modified
"2026-07-22T04:01:46Z"
vanir_signatures
[
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-0fdc4107",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "126636771179267164347849124104795878245",
                "146311462694702441864604298611546141686",
                "229694796421047086589626576460393590208",
                "333049585819998709432590915625886727448",
                "327344094990431339669481462780498307920",
                "185860195157659454465178398241492620444",
                "27437563912872136019565540546888073161"
            ]
        },
        "target": {
            "file": "XMPFiles/source/FormatSupport/ReconcileTIFF.cpp"
        },
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-2278309c",
        "digest": {
            "length": 4953.0,
            "function_hash": "221465110125069646214356567680915949747"
        },
        "target": {
            "function": "MPEG4_MetaHandler::ParseTimecodeTrack",
            "file": "XMPFiles/source/FileHandlers/MPEG4_Handler.cpp"
        },
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-3b510a9b",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "187518944139985249420273412500574211097",
                "15583002584226428710291704495432648427",
                "205985667509089914986957604550275770335"
            ]
        },
        "target": {
            "file": "XMPFiles/source/FormatSupport/TIFF_MemoryReader.cpp"
        },
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-7b21aa7d",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "125129654406807451222550634922981563100",
                "9544207699385971335663201338877825513",
                "311545938769563290809438059876576815640",
                "131638305182527215685738375823343845434",
                "296059875309506548659418954941307465628",
                "317752850298652022554702432266603748686"
            ]
        },
        "target": {
            "file": "XMPFiles/source/FileHandlers/MPEG4_Handler.cpp"
        },
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-c5dfc716",
        "digest": {
            "length": 2190.0,
            "function_hash": "103952551366490071579651973526231604574"
        },
        "target": {
            "function": "ImportConversionTable",
            "file": "XMPFiles/source/FormatSupport/ReconcileTIFF.cpp"
        },
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-e38fa175",
        "digest": {
            "length": 576.0,
            "function_hash": "1182487954308599792182195617916173662"
        },
        "target": {
            "function": "TIFF_MemoryReader::GetTag",
            "file": "XMPFiles/source/FormatSupport/TIFF_MemoryReader.cpp"
        },
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-ede195aa",
        "digest": {
            "length": 4395.0,
            "function_hash": "203380090588908134117353179680189655717"
        },
        "target": {
            "function": "ASF_Support::ReadHeaderObject",
            "file": "XMPFiles/source/FormatSupport/ASF_Support.cpp"
        },
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "signature_version": "v1",
        "source": "https://github.com/adobe/xmp-toolkit-sdk/commit/581c41213ddcee1fbc72cbb532531102a6617a25",
        "id": "CVE-2025-30306-f4450138",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "270222890788802721821863585226932284769",
                "197411064336870393814664177552957050643",
                "46555676254762346810097850001586770172",
                "162603547392460467271159842841031210326",
                "86296364783011747475092427852147418728",
                "151231048613982874318140143371889519049",
                "273233510198261307236627151114006245917",
                "9058603271038788767604125618184217002"
            ]
        },
        "target": {
            "file": "XMPFiles/source/FormatSupport/ASF_Support.cpp"
        },
        "deprecated": false,
        "signature_type": "Line"
    }
]