CVE-2025-64894: DNG SDK | Integer Overflow or Wraparound (CWE-190)
DNG SDK versions 1.7.0 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this issue to cause the application to crash or become unresponsive. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64894?
CVE-2025-64894 is classified as a denial-of-service vulnerability that can cause applications to crash.
How do I fix CVE-2025-64894?
To resolve CVE-2025-64894, update to a version of DNG SDK that is later than 1.7.0.
What versions are affected by CVE-2025-64894?
CVE-2025-64894 affects DNG SDK versions 1.7.0 and earlier.
Who can exploit CVE-2025-64894?
An attacker must have user-level access to exploit CVE-2025-64894 and cause application crashes.
What type of attack is CVE-2025-64894 associated with?
CVE-2025-64894 is associated with a denial-of-service attack, resulting in application unresponsiveness.