An improper array index validation vulnerability exists in the nowindow
functionality of OFFIS. A specially crafted DICOM file can lead to an
out-of-bounds write. An attacker can provide a malicious file to trigger
this vulnerability, CVE-2024-47796.
An improper array index validation vulnerability exists in the
determineMinMax functionality of OFFIS. A specially crafted DICOM file
can lead to an out-of-bounds write. An attacker can provide a malicious
file to trigger this vulnerability, CVE-2024-52333.
- https://bugs.mageia.org/show_bug.cgi?id=33930
-
- https://www.cve.org/CVERecord?id=CVE-2024-47796
- https://www.cve.org/CVERecord?id=CVE-2024-52333
- 9/core/dcmtk-3.6.7-4.3.mga9
Get the latest Linux and open source security news straight to your inbox.