CVE-2026-71442

Summary

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

Affected Software

VendorProductVersion RangeStatus
AdobeC2PA Tool0 <= c2patool-v0.26.70affected
AdobeC2PA Toolc2patool-v0.27.11unaffected
AdobeContent Credentials Rust SDK0 <= c2pa-v0.89.0affected
AdobeContent Credentials Rust SDKc2pa-v0.90.11unaffected

Weaknesses

  • CWE-191: Integer Underflow (Wrap or Wraparound) (CWE-191)

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References