Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia 9 dcmtk Critical Memory Corruption Vuln MGASA-2026-0040

mageia
Calendar Grey February 16, 2026
Dist Mageia Esm H88
Offis DCMTK security update addresses critical memory corruption and null pointer issues. Stay secure with Mageia.
MGASA-2026-0040 - Updated dcmtk packages fix security vulnerabilities

Summary

Description: OFFIS DCMTK dcmdata dcbytstr.cc makeDicomByteString memory corruption. (CVE-2025-14607) OFFIS DCMTK dcmqrscp dcmqrdbi.cc startMoveRequest null pointer dereference. (CVE-2025-14841)

References

- https://bugs.mageia.org/show_bug.cgi?id=34946

- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WA2BG2LFPVCYESQA5KLHS3YDK74NTELX/

- https://www.cve.org/CVERecord?id=CVE-2025-14607

- https://www.cve.org/CVERecord?id=CVE-2025-14841

Resolution

SRPMS

- 9/core/dcmtk-3.6.7-4.7.mga9

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 16 Feb 2026
URL: https://advisories.mageia.org/MGASA-2026-0040.html
Type: security
CVE: CVE-2025-14607, CVE-2025-14841

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here