Heap-based Buffer Overflow in DNG SDK by Adobe
CVE-2026-47964
7.8HIGH
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 16 June 2026
What is CVE-2026-47964?
The DNG SDK versions up to and including 1.7.1 2536 are prone to a heap-based buffer overflow vulnerability. This flaw allows an attacker to execute arbitrary code in the context of the current user, triggering the issue requires user interaction, such as opening a specially crafted malicious file. Users are encouraged to apply available patches and follow best practices to mitigate potential risks.
Affected Version(s)
Adobe DNG Software Development Kit (SDK) 0 <= 1.7.1.2536
Adobe DNG Software Development Kit (SDK) 0 <= 1.7.1.2536
Adobe DNG Software Development Kit (SDK) 1.7.1.2611