PT-2025-50132 · Adobe · Dng Sdk

Published

2025-12-09

·

Updated

2026-03-01

·

CVE-2025-64784

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions DNG SDK versions 1.7.0 and earlier
Description The DNG SDK is affected by a Heap-based Buffer Overflow that may result in memory exposure or application denial of service. An attacker could exploit this issue to disclose sensitive memory information. Exploitation requires user interaction, specifically a victim opening a malicious file.
Recommendations Update to a version of DNG SDK later than 1.7.0.

Fix

DoS

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

ASB-A-483074618
BDU:2025-15999
CVE-2025-64784

Affected Products

Dng Sdk