CVE-2024-34509
MEDIUMDescription
dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.
Is your site exposed to CVE-2024-34509?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| offis | dcmtk |
| debian | debian_linux |
References
Advisories & Patches
Exploits
Frequently Asked Questions
What is CVE-2024-34509? +
How severe is CVE-2024-34509? +
What products are affected by CVE-2024-34509? +
How do I check if I'm vulnerable to CVE-2024-34509? +
Related Vulnerabilities
An improper array index validation vulnerability exists in the nowindow functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file …
An improper array index validation vulnerability exists in the determineMinMax functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file …
Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to execute arbitrary code via the EctEnhancedCT method component.
A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows attackers to cause a Denial of Service …
An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially crafted malformed file can …
DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.