Search CVE reports


Toggle filters

11 – 20 of 29 results


CVE-2025-25474

Medium priority
Needs evaluation

DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-25472

Medium priority
Needs evaluation

A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DCM file.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-52333

Medium priority
Needs evaluation

An improper array index validation vulnerability exists in the determineMinMax functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to...

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-47796

Medium priority
Needs evaluation

An improper array index validation vulnerability exists in the nowindow functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger...

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-27628

Medium priority
Needs evaluation

Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to execute arbitrary code via the EctEnhancedCT method component.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-34509

Medium priority

Some fixes available 5 of 10

dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-34508

Medium priority

Some fixes available 5 of 10

dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-28130

Medium priority

Some fixes available 2 of 9

An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially crafted malformed file can lead to arbitrary code execution. An attacker can provide a...

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Fixed Fixed Needs evaluation
Show less packages

CVE-2022-43272

Low priority

Some fixes available 5 of 12

DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Association object.

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Needs evaluation Needs evaluation Fixed Fixed Fixed
Show less packages

CVE-2021-41690

Low priority

Some fixes available 4 of 5

DCMTK through 3.6.6 does not handle memory free properly. The malloced memory for storing all file information are recorded in a global variable LST and are not freed properly. Sending specific requests to the dcmqrdb program can...

1 affected package

dcmtk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dcmtk Not affected Not affected Fixed Fixed Fixed
Show less packages