PT-2026-7430 · Adobe · Dng Sdk

Jann Horn

·

Published

2026-02-10

·

Updated

2026-02-10

·

CVE-2026-21354

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions DNG SDK versions 1.7.1 2410 and earlier
Description DNG SDK versions 1.7.1 2410 and earlier are subject to an Integer Overflow or Wraparound condition. This can result in application denial-of-service, potentially causing the application to crash or become unresponsive. Successful exploitation requires a user to open a malicious file.
Recommendations Update DNG SDK to a version later than 1.7.1 2410.

Fix

DoS

Integer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-01887
CVE-2026-21354

Affected Products

Dng Sdk