cbcvebase.

Debian Dcmtk vulnerabilities

25 known vulnerabilities affecting debian/dcmtk.

Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH13MEDIUM10LOW2

Vulnerabilities

Page 2 of 2
CVE-2024-34509P4MEDIUMCVSS 5.3fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-34509 [MEDIUM] CVE-2024-34509: dcmtk - dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE mess... dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-14) sid: resolved (fixed in 3.6.7-14) trixie: resolved (fixed in 3.6.7-14)
debian
CVE-2025-25472P4MEDIUMCVSS 5.3fixed in dcmtk 3.6.7-9~deb12u3 (bookworm)2025
CVE-2025-25472 [MEDIUM] CVE-2025-25472: dcmtk - A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a De... A buffer overflow in DCMTK git master v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DCM file. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u3) bullseye: resolved (fixed in 3.6.5-1+deb11u4) forky: resolved (fixed in 3.6.9-4) sid: resolved (fixed in 3.6.9-4) trixie: resolved (fixed in 3.6.9-4)
debian
CVE-2022-4981P4MEDIUMCVSS 4.8fixed in dcmtk 3.6.5-1+deb11u5 (bullseye)2022
CVE-2022-4981 [MEDIUM] CVE-2022-4981: dcmtk - A vulnerability was detected in DCMTK up to 3.6.7. The impacted element is the f... A vulnerability was detected in DCMTK up to 3.6.7. The impacted element is the function DcmQueryRetrieveConfig::readPeerList of the file /dcmqrcnf.cc of the component dcmqrscp. The manipulation results in null pointer dereference. The attack needs to be approached locally. The exploit is now public and may be used. Upgrading to version 3.6.8 is sufficient to resolve t
debian
CVE-2024-34508P4MEDIUMCVSS 4.3fixed in dcmtk 3.6.7-9~deb12u2 (bookworm)2024
CVE-2024-34508 [MEDIUM] CVE-2024-34508: dcmtk - dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE messa... dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Scope: local bookworm: resolved (fixed in 3.6.7-9~deb12u2) bullseye: resolved (fixed in 3.6.5-1+deb11u1) forky: resolved (fixed in 3.6.7-14) sid: resolved (fixed in 3.6.7-14) trixie: resolved (fixed in 3.6.7-14)
debian
CVE-2025-14841P4MEDIUMCVSS 4.8fixed in dcmtk 3.6.5-1+deb11u6 (bullseye)2025
CVE-2025-14841 [MEDIUM] CVE-2025-14841: dcmtk - A flaw has been found in OFFIS DCMTK up to 3.6.9. The impacted element is the fu... A flaw has been found in OFFIS DCMTK up to 3.6.9. The impacted element is the function DcmQueryRetrieveIndexDatabaseHandle::startFindRequest/DcmQueryRetrieveIndexDatabaseHandle::startMoveRequest in the library dcmqrdb/libsrc/dcmqrdbi.cc of the component dcmqrscp. This manipulation causes null pointer dereference. The attack requires local access. Upgrading to versio
debian
Debian Dcmtk vulnerabilities | cvebase