Debian Dcmtk vulnerabilities

26 known vulnerabilities affecting debian/dcmtk.

Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH13MEDIUM11LOW2

Vulnerabilities

Page 1 of 2
CVE-2026-5663MEDIUMCVSS 6.92026
CVE-2026-5663 [MEDIUM] CVE-2026-5663: dcmtk - A security flaw has been discovered in OFFIS DCMTK up to 3.7.0. This impacts the... A security flaw has been discovered in OFFIS DCMTK up to 3.7.0. This impacts the function executeOnReception/executeOnEndOfStudy of the file dcmnet/apps/storescp.cc of the component storescp. Performing a manipulation results in os command injection. Remote exploitation of the attack is possible. The patch is named edbb085e45788dccaf0e64d71534cfca925784b8. Applying a
debian
CVE-2025-25475HIGHCVSS 7.5fixed in dcmtk 3.6.7-9~deb12u3 (bookworm)2025
CVE-2025-25475 [HIGH] CVE-2025-25475: dcmtk - A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+... A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DICOM file. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u3) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.9-4) sid: resolved (fixed in 3.6.9-4) trixie: resolved (fixed in 3.6.9-4
debian
CVE-2025-25472MEDIUMCVSS 5.3fixed in dcmtk 3.6.7-9~deb12u3 (bookworm)2025
CVE-2025-25472 [MEDIUM] CVE-2025-25472: dcmtk - A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a De... A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DCM file. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u3) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.9-4) sid: resolved (fixed in 3.6.9-4) trixie: resolved (fixed in 3.6.9-4)
debian
CVE-2025-14607MEDIUMCVSS 5.3fixed in dcmtk 3.6.5-1+deb11u6 (bullseye)2025
CVE-2025-14607 [MEDIUM] CVE-2025-14607: dcmtk - A vulnerability was detected in OFFIS DCMTK up to 3.6.9. Affected by this issue ... A vulnerability was detected in OFFIS DCMTK up to 3.6.9. Affected by this issue is the function DcmByteString::makeDicomByteString of the file dcmdata/libsrc/dcbytstr.cc of the component dcmdata. The manipulation results in memory corruption. The attack can be launched remotely. Upgrading to version 3.7.0 can resolve this issue. The patch is identified as 4c0e5c1007
debian
CVE-2025-25474MEDIUMCVSS 6.5fixed in dcmtk 3.6.7-9~deb12u3 (bookworm)2025
CVE-2025-25474 [MEDIUM] CVE-2025-25474: dcmtk - DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component ... DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u3) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.9-4) sid: resolved (fixed in 3.6.9-4) trixie: resolved (fixed in 3.6.9-4)
debian
CVE-2025-2357MEDIUMCVSS 5.3fixed in dcmtk 3.6.5-1+deb11u4 (bullseye)2025
CVE-2025-2357 [MEDIUM] CVE-2025-2357: dcmtk - A vulnerability was found in DCMTK 3.6.9. It has been declared as critical. This... A vulnerability was found in DCMTK 3.6.9. It has been declared as critical. This vulnerability affects unknown code of the component dcmjpls JPEG-LS Decoder. The manipulation leads to memory corruption. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 3239a7915. It is recommended to apply a pa
debian
CVE-2025-14841MEDIUMCVSS 4.8fixed in dcmtk 3.6.5-1+deb11u6 (bullseye)2025
CVE-2025-14841 [MEDIUM] CVE-2025-14841: dcmtk - A flaw has been found in OFFIS DCMTK up to 3.6.9. The impacted element is the fu... A flaw has been found in OFFIS DCMTK up to 3.6.9. The impacted element is the function DcmQueryRetrieveIndexDatabaseHandle::startFindRequest/DcmQueryRetrieveIndexDatabaseHandle::startMoveRequest in the library dcmqrdb/libsrc/dcmqrdbi.cc of the component dcmqrscp. This manipulation causes null pointer dereference. The attack requires local access. Upgrading to versio
debian
CVE-2025-9732MEDIUMCVSS 4.8fixed in dcmtk 3.6.5-1+deb11u5 (bullseye)2025
CVE-2025-9732 [MEDIUM] CVE-2025-9732: dcmtk - A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown fun... A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown function in the library dcmimage/include/dcmtk/dcmimage/diybrpxt.h of the component dcm2img. Such manipulation leads to memory corruption. Local access is required to approach this attack. The name of the patch is 7ad81d69b. It is best practice to apply a patch to resolve this issue. Scope: l
debian
CVE-2024-47796HIGHCVSS 8.4fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-47796 [HIGH] CVE-2024-47796: dcmtk - An improper array index validation vulnerability exists in the nowindow function... An improper array index validation vulnerability exists in the nowindow functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (f
debian
CVE-2024-52333HIGHCVSS 8.4fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-52333 [HIGH] CVE-2024-52333: dcmtk - An improper array index validation vulnerability exists in the determineMinMax f... An improper array index validation vulnerability exists in the determineMinMax functionality of OFFIS DCMTK 3.6.8. A specially crafted DICOM file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: reso
debian
CVE-2024-27628HIGHCVSS 8.1fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-27628 [HIGH] CVE-2024-27628: dcmtk - Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to execute arb... Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to execute arbitrary code via the EctEnhancedCT method component. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved forky: resolved (fixed in 3.6.8-6) sid: resolved (fixed in 3.6.8-6) trixie: resolved (fixed in 3.6.8-6)
debian
CVE-2024-28130HIGHCVSS 7.5fixed in dcmtk 3.6.7-9~deb12u3 (bookworm)2024
CVE-2024-28130 [HIGH] CVE-2024-28130: dcmtk - An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::... An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u3) bullseye: resolved (fixed in 3.6.5
debian
CVE-2024-34509MEDIUMCVSS 5.3fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-34509 [MEDIUM] CVE-2024-34509: dcmtk - dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE mess... dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-14) sid: resolved (fixed in 3.6.7-14) trixie: resolved (fixed in 3.6.7-14)
debian
CVE-2024-34508MEDIUMCVSS 4.3fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-34508 [MEDIUM] CVE-2024-34508: dcmtk - dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE messa... dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-14) sid: resolved (fixed in 3.6.7-14) trixie: resolved (fixed in 3.6.7-14)
debian
CVE-2022-43272HIGHCVSS 7.5fixed in dcmtk 3.6.7-8 (bookworm)2022
CVE-2022-43272 [HIGH] CVE-2022-43272: dcmtk - DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Association o... DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Association object. Scope: local bookworm: resolved (fixed in 3.6.7-8) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-8) sid: resolved (fixed in 3.6.7-8) trixie: resolved (fixed in 3.6.7-8)
debian
CVE-2022-2121HIGHCVSS 7.5fixed in dcmtk 3.6.7-1 (bookworm)2022
CVE-2022-2121 [HIGH] CVE-2022-2121: dcmtk - OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulne... OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, which may result in a denial-of-service condition. Scope: local bookworm: resolved (fixed in 3.6.7-1) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-1) sid: resolved (fixed in 3.6.7-1) trixie: resolved (fixed in 3.6.7-1)
debian
CVE-2022-2119HIGHCVSS 7.5fixed in dcmtk 3.6.7-6 (bookworm)2022
CVE-2022-2119 [HIGH] CVE-2022-2119: dcmtk - OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vuln... OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vulnerable to path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names. This could allow remote code execution. Scope: local bookworm: resolved (fixed in 3.6.7-6) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.7-6) s
debian
CVE-2022-2120HIGHCVSS 7.5fixed in dcmtk 3.6.7-6 (bookworm)2022
CVE-2022-2120 [HIGH] CVE-2022-2120: dcmtk - OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) is vulnerab... OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) is vulnerable to relative path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names. This could allow remote code execution. Scope: local bookworm: resolved (fixed in 3.6.7-6) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.7
debian
CVE-2022-4981MEDIUMCVSS 4.8fixed in dcmtk 3.6.5-1+deb11u5 (bullseye)2022
CVE-2022-4981 [MEDIUM] CVE-2022-4981: dcmtk - A vulnerability was detected in DCMTK up to 3.6.7. The impacted element is the f... A vulnerability was detected in DCMTK up to 3.6.7. The impacted element is the function DcmQueryRetrieveConfig::readPeerList of the file /dcmqrcnf.cc of the component dcmqrscp. The manipulation results in null pointer dereference. The attack needs to be approached locally. The exploit is now public and may be used. Upgrading to version 3.6.8 is sufficient to resolve t
debian
CVE-2021-41687HIGHCVSS 7.5fixed in dcmtk 3.6.7-1 (bookworm)2021
CVE-2021-41687 [HIGH] CVE-2021-41687: dcmtk - DCMTK through 3.6.6 does not handle memory free properly. The program malloc a h... DCMTK through 3.6.6 does not handle memory free properly. The program malloc a heap memory for parsing data, but does not free it when error in parsing. Sending specific requests to the dcmqrdb program incur the memory leak. An attacker can use it to launch a DoS attack. Scope: local bookworm: resolved (fixed in 3.6.7-1) bullseye: resolved (fixed in 3.6.5-1+deb11u1) f
debian