CVE-2026-34711

CAI Content Credentials versions c2pa-web@0.7.1, c2pa-v0.80.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:adobe:c2pa:*:*:*:*:*:rust:*:*
cpe:2.3:a:adobe:c2pa-web:*:*:*:*:*:node.js:*:*
OR cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

23 Jul 2026, 09:10

Type Values Removed Values Added
Summary
  • (es) Las versiones c2pa-web@0.7.1, c2pa-v0.80.1 y anteriores de CAI Content Credentials se ven afectadas por una vulnerabilidad de desbordamiento de entero o wraparound. Un atacante podría explotar esta vulnerabilidad para bloquear la aplicación, lo que llevaría a una condición de denegación de servicio. La explotación de este problema no requiere interacción del usuario.

15 Jun 2026, 15:07

Type Values Removed Values Added
First Time Apple macos
Google
Linux
Google android
Apple
Linux linux Kernel
Microsoft windows
Adobe
Adobe c2pa
Microsoft
Adobe c2pa-web
Apple iphone Os
CPE cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:*
cpe:2.3:a:adobe:c2pa:*:*:*:*:*:rust:*:*
cpe:2.3:a:adobe:c2pa-web:*:*:*:*:*:node.js:*:*
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
References () https://helpx.adobe.com/security/products/content-authenticity-sdk/apsb26-61.html - () https://helpx.adobe.com/security/products/content-authenticity-sdk/apsb26-61.html - Vendor Advisory

09 Jun 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-09 22:16

Updated : 2026-07-23 09:10


NVD link : CVE-2026-34711

Mitre link : CVE-2026-34711

CVE.ORG link : CVE-2026-34711


JSON object : View

Products Affected

adobe

  • c2pa
  • c2pa-web

microsoft

  • windows

google

  • android

linux

  • linux_kernel

apple

  • macos
  • iphone_os
CWE
CWE-190

Integer Overflow or Wraparound