Heap Overflow Vulnerability in Adobe DNG Software Development Kit
CVE-2020-9589

7.8HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
26 June 2020

Summary

The Adobe DNG Software Development Kit (SDK) prior to version 1.6 is vulnerable to a heap overflow issue. This vulnerability allows attackers to manipulate memory allocations, potentially leading to arbitrary code execution. If exploited, this vulnerability may allow unauthorized access to the system or network, highlighting the importance of applying patches and updates from Adobe.

Affected Version(s)

Adobe DNG Software Development Kit (SDK) Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.