Integer Overflow Vulnerability in DNG SDK by Adobe
CVE-2026-27281
5.5MEDIUM
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 10 March 2026
What is CVE-2026-27281?
The DNG SDK from Adobe versions 1.7.1 2471 and earlier contain a vulnerability that occurs due to an integer overflow or wraparound. This security flaw can potentially lead to denial-of-service conditions, causing the application to crash or become unresponsive. To exploit this vulnerability, an attacker must lure a victim into opening a specially crafted malicious file, thus initiating the exploit.
Affected Version(s)
Adobe DNG Software Development Kit (SDK) 0 <= 1.7.1.2471
Adobe DNG Software Development Kit (SDK) 0 <= 1.7.1.2471
Adobe DNG Software Development Kit (SDK) 1.7.1.2502