First published: Fri Jun 26 2020(Updated: )
Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Digital Negative Software Development Kit | <=1.5 | |
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9625 is categorized as a moderate severity vulnerability due to the potential for information disclosure.
CVE-2020-9625 affects Adobe DNG SDK version 1.5 and earlier by allowing out-of-bounds read that could be exploited for sensitive information exposure.
To fix CVE-2020-9625, users should update to the latest version of the Adobe DNG Software Development Kit available.
Developers using Adobe DNG Software Development Kit version 1.5 and earlier are affected by CVE-2020-9625.
Exploiting CVE-2020-9625 could lead to unauthorized access to sensitive information through out-of-bounds read vulnerabilities.