A vulnerability was identified in DCMTK up to 3.6.9. This...
Moderate severity
Unreviewed
Published
Aug 31, 2025
to the GitHub Advisory Database
•
Updated Sep 5, 2025
Description
Published by the National Vulnerability Database
Aug 31, 2025
Published to the GitHub Advisory Database
Aug 31, 2025
Last updated
Sep 5, 2025
A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown function in the library dcmimage/include/dcmtk/dcmimage/diybrpxt.h of the component dcm2img. Such manipulation leads to memory corruption. Local access is required to approach this attack. The name of the patch is 7ad81d69b. It is best practice to apply a patch to resolve this issue.
References