Offis

Dcmtk

41 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 31.08.2025 14:02:06
  • Zuletzt bearbeitet 05.09.2025 20:21:46

A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown function in the library dcmimage/include/dcmtk/dcmimage/diybrpxt.h of the component dcm2img. Such manipulation leads to memory corruption. Local access is required to approa...

  • EPSS 0.43%
  • Veröffentlicht 17.03.2025 01:31:04
  • Zuletzt bearbeitet 03.11.2025 20:18:08

A vulnerability was found in DCMTK 3.6.9. It has been declared as critical. This vulnerability affects unknown code of the component dcmjpls JPEG-LS Decoder. The manipulation leads to memory corruption. The attack can be initiated remotely. The explo...

  • EPSS 0.55%
  • Veröffentlicht 18.02.2025 23:15:10
  • Zuletzt bearbeitet 04.11.2025 20:40:26

A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DICOM file.

  • EPSS 0.34%
  • Veröffentlicht 18.02.2025 23:15:10
  • Zuletzt bearbeitet 04.11.2025 20:33:27

DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.

  • EPSS 0.35%
  • Veröffentlicht 18.02.2025 23:15:10
  • Zuletzt bearbeitet 04.11.2025 20:31:41

A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DCM file.

Exploit
  • EPSS 0.62%
  • Veröffentlicht 13.01.2025 15:15:09
  • Zuletzt bearbeitet 03.11.2025 21:17:21

An improper array index validation vulnerability exists in the determineMinMax functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerabili...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 13.01.2025 15:15:08
  • Zuletzt bearbeitet 03.11.2025 21:16:30

An improper array index validation vulnerability exists in the nowindow functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability.

Exploit
  • EPSS 0.73%
  • Veröffentlicht 28.06.2024 19:15:05
  • Zuletzt bearbeitet 11.06.2025 15:22:56

Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to execute arbitrary code via the EctEnhancedCT method component.

Exploit
  • EPSS 0.75%
  • Veröffentlicht 05.05.2024 20:15:07
  • Zuletzt bearbeitet 03.11.2025 21:16:11

dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.

Exploit
  • EPSS 0.69%
  • Veröffentlicht 05.05.2024 20:15:07
  • Zuletzt bearbeitet 03.11.2025 21:16:11

dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.