Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
An update that solves one vulnerability can now be installed.. # dcmtk-3.7.0-2.1 on GA media Announcement ID: openSUSE-SU-2026:10502-1 Rating: moderate Cross-References: * CVE-2026-5663 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.7.0-2.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.7.0-2.1 * dcmtk-devel 3.7.0-2.1 * libdcmtk20 3.7.0-2.1 ## References: * https://www.suse.com/security/cve/CVE-2026-5663.html . Update in openSUSE Tumbleweed resolves a moderate issue in dcmtk 3.7.0-2.1, enhancing overall system security.. openSUSE Tumbleweed, dcmtk package, moderate security issue, security update. . LinuxSecurity.com Team
MGASA-2026-0040 - Updated dcmtk packages fix security vulnerabilities. MGASA-2026-0040 - Updated dcmtk packages fix security vulnerabilities Publication date: 16 Feb 2026 URL: https://advisories.mageia.org/MGASA-2026-0040.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-14607, CVE-2025-14841 Description: OFFIS DCMTK dcmdata dcbytstr.cc makeDicomByteString memory corruption. (CVE-2025-14607) OFFIS DCMTK dcmqrscp dcmqrdbi.cc startMoveRequest null pointer dereference. (CVE-2025-14841) References: - https://bugs.mageia.org/show_bug.cgi?id=34946 - https://lists.opensuse.org/archives/list/
Two vulnerabilities have been addressed in DCMTK, a collection of libraries and applications implementing large parts of the DICOM standard for medical images. CVE-2025-14607 Possible memory corruption caused by illegal attributes in datasets which. ------------------------------------------------------------------------- Debian LTS Advisory DLA-4443-1
An update that solves two vulnerabilities and has one errata is now available.. openSUSE Security Update: Security update for dcmtk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0005-1 Rating: moderate References: #1254123 #1255292 #1255464 Cross-References: CVE-2025-14607 CVE-2025-14841 Affected Products: openSUSE Backports SLE-15-SP6 openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that solves two vulnerabilities and has one errata is now available. Description: This update for dcmtk fixes the following issues: - Update to 3.7.0. See docs/CHANGES.370 for the full list of changes * CVE-2025-14841: invalid messages may trigger a segmentation fault due to a NULL pointer dereference (boo#1255292). * CVE-2025-14607: manipulation to component dcmdata could lead to memory corruption (boo#1255464). - Avoid unnecessary dependencies (boo#1254123): Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-5=1 - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2026-5=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.7.0-bp157.3.6.1 dcmtk-debuginfo-3.7.0-bp157.3.6.1 dcmtk-debugsource-3.7.0-bp157.3.6.1 dcmtk-devel-3.7.0-bp157.3.6.1 libdcmtk20-3.7.0-bp157.3.6.1 libdcmtk20-debuginfo-3.7.0-bp157.3.6.1 - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.7.0-bp156.4.15.1 dcmtk-devel-3.7.0-bp156.4.15.1 libdcmtk20-3.7.0-bp156.4.15.1 References: https://www.suse.com/security/cve/CVE-2025-14607.html https://www.suse.com/security/cve/CVE-2025-14841.html https://bugzilla.suse.com/1254123 https://bugzilla.suse.com/1255292 https://bugzilla.suse.com/1255464 . An openSUSE Security Update for dcmtk addressing two vulnerabilities that could lead to memory issues and crashes.. openSUSE Security,dcmtool update,moderate risk,backports SLE. . LinuxSecurity.com Team
An update that solves 2 vulnerabilities can now be installed.. # dcmtk-3.7.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10006-1 Rating: moderate Cross-References: * CVE-2025-14607 * CVE-2025-14841 Affected Products: * openSUSE Tumbleweed An update that solves 2 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.7.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.7.0-1.1 * dcmtk-devel 3.7.0-1.1 * libdcmtk20 3.7.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-14607.html * https://www.suse.com/security/cve/CVE-2025-14841.html . An update for openSUSE Tumbleweed addresses two moderate security issues in dcmtk. Install the latest version now.. openSUSE Tumbleweed, dcmtk security, software update, system vulnerabilities. . LinuxSecurity.com Team
MGASA-2025-0265 - Updated dcmtk packages fix security vulnerabilities. MGASA-2025-0265 - Updated dcmtk packages fix security vulnerabilities Publication date: 07 Nov 2025 URL: https://advisories.mageia.org/MGASA-2025-0265.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-9732 Description: A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown function in the library dcmimage/include/dcmtk/dcmimage/diybrpxt.h of the component dcm2img. Such manipulation leads to memory corruption. Local access is required to approach this attack. The name of the patch is 7ad81d69b. It is best practice to apply a patch to resolve this issue. References: - https://bugs.mageia.org/show_bug.cgi?id=34718 - https://lists.debian.org/debian-lts-announce/2025/11/msg00006.html - https://www.cve.org/CVERecord?id=CVE-2025-9732 SRPMS: - 9/core/dcmtk-3.6.7-4.6.mga9 . Updated dcmtk packages in Mageia fix vulnerabilities for local access leading to memory corruption. Apply patches promptly.. Mageia, dcmtk, security updates, memory integrity, local access risks. . Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for dcmtk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0334-1 Rating: moderate References: #1248995 Cross-References: CVE-2025-9732 Affected Products: openSUSE Backports SLE-15-SP6 openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for dcmtk fixes the following issues: - CVE-2025-9732: Fixed a memory corruption in dcm2img (boo#1248995). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2025-334=1 - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2025-334=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.6.9-bp157.3.3.1 dcmtk-debuginfo-3.6.9-bp157.3.3.1 dcmtk-debugsource-3.6.9-bp157.3.3.1 dcmtk-devel-3.6.9-bp157.3.3.1 libdcmtk19-3.6.9-bp157.3.3.1 libdcmtk19-debuginfo-3.6.9-bp157.3.3.1 - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.6.9-bp156.4.12.1 dcmtk-devel-3.6.9-bp156.4.12.1 libdcmtk19-3.6.9-bp156.4.12.1 References: https://www.suse.com/security/cve/CVE-2025-9732.html https://bugzilla.suse.com/1248995 . An updated patch for dcmtk in openSUSE has effectively addressed a security flaw related to memory corruption that was recently identified.. openSUSE, dcmtk, memory issue, patch instructions. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # dcmtk-3.6.9-4.1 on GA media Announcement ID: openSUSE-SU-2025:15504-1 Rating: moderate Cross-References: * CVE-2025-9732 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.6.9-4.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.6.9-4.1 * dcmtk-devel 3.6.9-4.1 * libdcmtk19 3.6.9-4.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9732.html . Minor updates addressing concerns for dcmtk-3.6.9-4.1 have now been released for the community of openSUSE Tumbleweed.. openSUSE Tumbleweed dcmtk security update vulnerability. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.