6.5
CVSSv3

CVE-2022-2121

Published: 24/06/2022 Updated: 05/07/2022
CVSS v2 Base Score: 3.3 | Impact Score: 2.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 294
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

OFFIS DCMTK's (All versions before 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, which may result in a denial-of-service condition.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

offis dcmtk

Vendor Advisories

Debian Bug report logs - #1014044 dcmtk: Multiple CVEs reported: CVE-2022-2119 CVE-2022-2120 CVE-2022-2121 Package: dcmtk; Maintainer for dcmtk is Debian Med Packaging Team <debian-med-packaging@listsaliothdebianorg>; Source for dcmtk is src:dcmtk (PTS, buildd, popcon) Reported by: Mathieu Malaterre <malat@debianorg&g ...
Debian Bug report logs - #1017743 dcmtk: CVE-2022-2119 CVE-2022-2120 Package: dcmtk; Maintainer for dcmtk is Debian Med Packaging Team <debian-med-packaging@listsaliothdebianorg>; Source for dcmtk is src:dcmtk (PTS, buildd, popcon) Reported by: Mathieu Malaterre <malat@debianorg> Date: Wed, 29 Jun 2022 08:48:01 U ...

ICS Advisories

OFFIS DCMTK
Critical Infrastructure Sectors: Healthcare and Public Health