CVE Database
/

CVE-2019-1010228

Back to search

CVE-2019-1010228

Published: Jul 22, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

OFFIS.de DCMTK 3.6.3 and below is affected by: Buffer Overflow. The impact is: Possible code execution and confirmed Denial of Service. The component is: DcmRLEDecoder::decompress() (file dcrledec.h, line 122). The attack vector is: Many scenarios of DICOM file processing (e.g. DICOM to image conversion). The fixed version is: 3.6.4, after commit 40917614e.

VendorProductVersions

OFFIS.de

DCMTK

affected
3.6.3 and below [fixed: 3.6.4, after commit 40917614e]

References

FEDORA-2019-12650a34d8
vendor-advisory
x_refsource_FEDORA
FEDORA-2019-4349fc0afb
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now