Dolby's vulnerability footprint concentrates in its audio processing and codec products, which are embedded across consumer electronics, media platforms, and entertainment systems. The observed weakness classes center on deserialization of untrusted data and untrusted search-path issues, reflecting the parsing and library-loading complexity inherent to multimedia codecs and audio frameworks. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dolby over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-7293HIGH The Dolby DAX2 and DAX3 API services are vulnerable to a privilege escalation vulnerability that allows a normal user to get arbitrary system privileges, because these services hav | Apr 26, 2017 | 7.8 | 29 | NO | YES |
CVE-2021-3146HIGH The Dolby Audio X2 (DAX2) API service before 0.8.8.90 on Windows allows local users to gain privileges. | Apr 8, 2021 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dolby.
Media articles that mention a CVE ID that affects a product developed by Dolby — matched by CVE ID, not by vendor name.