CVE-2026-47927: DNG SDK | Out-of-bounds Read (CWE-125)
Published Jun 16, 2026
·Updated
DNG SDK versions 1.7.1 2536 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
2 affected components
Adobe DNG SDK<=1.7.1 2536
Adobe DNG Software Development Kit<1.7.1.2611
Event History
Jun 16, 2026
CVE Published
via MITRE·04:32 PM
Data Sourced
via MITRE·04:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-47927?
CVE-2026-47927 has a medium severity score of 5.5.
2
What type of vulnerability is identified in CVE-2026-47927?
CVE-2026-47927 is an out-of-bounds read vulnerability (CWE-125).
3
How do I fix CVE-2026-47927?
To fix CVE-2026-47927, update to Adobe DNG SDK version 1.7.1 2537 or later.
4
What impact can CVE-2026-47927 have on my system?
CVE-2026-47927 can lead to the disclosure of sensitive memory, potentially exposing confidential information.
5
Does exploitation of CVE-2026-47927 require user interaction?
Yes, exploitation of CVE-2026-47927 requires user interaction.