Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-44628

Опубликовано: 30 июн. 2026
Источник: debian
EPSS Низкий

Описание

An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the expected lockfile, and at least one matching worklist record.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dcmtkfixed3.7.0+really3.7.0-7package
dcmtkno-dsatrixiepackage
dcmtkpostponedbookwormpackage
dcmtkpostponedbullseyepackage

Примечания

  • Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=f4e0074682645b1a4289d62581926c4394d5c6d5

  • Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=694a0a06a38015ce768fa161a62b148189f84959

EPSS

Процентиль: 32%
0.00395
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the expected lockfile, and at least one matching worklist record.

CVSS3: 7.5
nvd
около 1 месяца назад

An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the expected lockfile, and at least one matching worklist record.

CVSS3: 7.5
github
около 1 месяца назад

An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the expected lockfile, and at least one matching worklist record.

EPSS

Процентиль: 32%
0.00395
Низкий