Heap Overflow Vulnerability in Adobe DNG Software Development Kit
CVE-2020-9589
7.8HIGH
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 26 June 2020
Summary
The Adobe DNG Software Development Kit (SDK) prior to version 1.6 is vulnerable to a heap overflow issue. This vulnerability allows attackers to manipulate memory allocations, potentially leading to arbitrary code execution. If exploited, this vulnerability may allow unauthorized access to the system or network, highlighting the importance of applying patches and updates from Adobe.
Affected Version(s)
Adobe DNG Software Development Kit (SDK) Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved