Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 42: gdcm 2025-22c8d5a1c7 Security Advisory Updates

fedora
Calendar Grey March 15, 2025
Dist Fedora Esm H88
Critical security advisory for Fedora 42 updates GDCM addressing CVE-2024-27628 and CVE-2024-28130 risks.
Update for dcmtk 3.6.9 Includes security fix for CVE-2024-27628, CVE-2024-28130

Summary

Grassroots DiCoM (GDCM) is a C++ library for DICOM medical files.

It supports ACR-NEMA version 1 and 2 (huffman compression is not supported),

RAW, JPEG, JPEG 2000, JPEG-LS, RLE and deflated transfer syntax.

It comes with a super fast scanner implementation to quickly scan hundreds of

DICOM files. It supports SCU network operations (C-ECHO, C-FIND, C-STORE,

C-MOVE). PS 3.3 & 3.6 are distributed as XML files.

It also provides PS 3.15 certificates and password based mechanism to

anonymize and de-identify DICOM datasets.

Update Information:

Update for dcmtk 3.6.9 Includes security fix for CVE-2024-27628, CVE-2024-28130

Change Log

* Mon Mar 3 2025 Tom Rix - 3.0.24-8 - cmake version changed * Wed Feb 19 2025 Ankur Sinha (Ankur Sinha Gmail) - 3.0.24-7 - Rebuild for dcmtk 3.6.9

References


[ 1 ] Bug #2293952 - CVE-2024-28130 dcmtk: incorrect type conversion https://bugzilla.redhat.com/show_bug.cgi?id=2293952 [ 2 ] Bug #2294757 - CVE-2024-27628 dcmtk: Buffer Overflow via the EctEnhancedCT method https://bugzilla.redhat.com/show_bug.cgi?id=2294757

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-22c8d5a1c7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: gdcm
Product: Fedora 42
Version: 3.0.24
Release: 8.fc42
URL:
Summary: Grassroots DiCoM is a C++ library to parse DICOM medical files

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here