CVE-2026-71444: CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published Aug 25, 2026
·Updated
CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Affected Software
3 affected components
CAI Content Credentials
Adobe C2pa Rust<=0.89.0
Adobe C2patool<=0.26.70
Remediation
Event History
Aug 25, 2026
CVE Published
via MITRE·05:31 PM
Data Sourced
via MITRE·05:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The attack vector is local. The CVSS data indicates that no privileges and no user interaction are required.
2
Does this issue affect confidentiality or integrity?
The CVSS data reports no confidentiality or integrity impact. Its impact is limited to availability, with a high availability impact due to application denial of service.