Executive brief
Adobe's Content Authenticity SDK is affected by an integer underflow vulnerability that allows attackers to crash the application without user interaction. Exploitation could disrupt services relying on the SDK for content authentication, leading to availability impact and operational disruption.
Technical details
The vulnerability is an integer underflow (wrap or wraparound) condition in the Content Authenticity SDK. An attacker can trigger this flaw remotely over the network to cause the application to crash, resulting in a denial-of-service condition. No user interaction or authentication is required for exploitation. The exact vulnerable component and affected versions are not detailed in the available information, but the fix should be available via Adobe's security bulletin APSB26-110.
Affected products
- Adobe Content Authenticity SDK
Timeline
- 2026-08-25: disclosed