High severity7.1NVD Advisory· Published Dec 9, 2025· Updated Jun 17, 2026
CVE-2025-64784
CVE-2025-64784
Description
DNG SDK versions 1.7.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure or application denial of service. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products
3- cpe:2.3:a:adobe:dng_software_development_kit:*:*:*:*:*:*:*:*Range: <=1.7.0
<=1.7.0+ 1 more
- (no CPE)range: <=1.7.0
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/dng-sdk/apsb25-118.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.