Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-50254

Опубликовано: 30 июн. 2026
Источник: debian
EPSS Низкий

Описание

An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dcmtkfixed3.7.0+really3.7.0-7package
dcmtkno-dsatrixiepackage
dcmtkpostponedbookwormpackage
dcmtkpostponedbullseyepackage

Примечания

  • Fixed by: https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=23f181f7a3cb8334056f751a3a0c2ddf01046752

EPSS

Процентиль: 30%
0.00379
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it.

CVSS3: 7.5
nvd
около 1 месяца назад

An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it.

CVSS3: 7.5
github
около 1 месяца назад

An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it.

EPSS

Процентиль: 30%
0.00379
Низкий