Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-2581

Опубликовано: 21 мар. 2025
Источник: debian

Описание

A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xmedconfixed0.25.1-gtk3+dfsg-1package
xmedconfixed0.23.0-gtk3+dfsg-1+deb12u2bookwormpackage

Примечания

  • https://xmedcon.sourceforge.io/Main/New

  • https://sourceforge.net/p/xmedcon/code/ci/e7a88836fc2277f8ab777f3ef24f917d08415559/

  • affects only arches where int64_t != size_t (32 bits arches)

Связанные уязвимости

CVSS3: 4.3
ubuntu
11 месяцев назад

A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 4.3
nvd
11 месяцев назад

A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 4.3
github
11 месяцев назад

A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.