CVE-2026-76189: CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)
Published Aug 25, 2026
·Updated
CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Affected Software
3 affected components
CAI Content Credentials
Adobe C2pa Rust<=0.89.0
Adobe C2patool<=0.26.70
Remediation
Event History
Aug 25, 2026
CVE Published
via MITRE·05:31 PM
Data Sourced
via MITRE·05:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to trigger the denial of service?
The vulnerability is rated with local attack vector (AV:L) and requires no privileges (PR:N). No user interaction is required.
2
What is the expected impact if exploitation succeeds?
Successful exploitation can crash the affected application, causing a denial-of-service condition. The provided impact metrics indicate availability impact only, with no stated confidentiality or integrity impact.