Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

openSUSE: Important DCMTK Security Update Released for 2024:0113-1

opensuse
Calendar Grey April 25, 2024
Dist Opensuse Esm H88
The recent dcmtk release tackles a significant vulnerability in openSUSE, reinforcing system integrity through vital package upgrades.
An update that solves one vulnerability and has one errata is now available

Description

This update for dcmtk fixes the following issues:

* Fixed incorrect type conversion in the

DVPSSoftcopyVOI_PList:createFromImage functionality of OFFIS DCMTK

(boo#1223324, CVE-2024-28130)

- Add missing requirements for dcmtk-devel (boo#1220809)

- Update to 3.6.8 See DOCS/CHANGES.368 for the full list of changes

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP5:

zypper in -t patch openSUSE-2024-113=1

Package List

- openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64):

dcmtk-3.6.8-bp155.3.3.1

dcmtk-devel-3.6.8-bp155.3.3.1

libdcmtk18-3.6.8-bp155.3.3.1

References

https://www.suse.com/security/cve/CVE-2024-28130.html

https://bugzilla.suse.com/1220809

https://bugzilla.suse.com/1223324

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2024:0113-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP5 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here