NA

CVE-2024-22391

Published: 25/04/2024 Updated: 05/05/2024
CVSS v3 Base Score: 7.7 | Impact Score: 5.5 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

Vendor Advisories

Debian Bug report logs - #1070387 gdcm: CVE-2024-25569 CVE-2024-22373 CVE-2024-22391 Package: src:gdcm; Maintainer for src:gdcm is Debian Med Packaging Team <debian-med-packaging@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Sat, 4 May 2024 17:51:02 UTC Severity: grave Tags: securi ...