Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-8396

Опубликовано: 12 янв. 2016
Источник: nvd
CVSS3: 10
CVSS2: 10
EPSS Средний

Описание

Integer overflow in the ImageRegionReader::ReadIntoBuffer function in MediaStorageAndFileFormat/gdcmImageRegionReader.cxx in Grassroots DICOM (aka GDCM) before 2.6.2 allows attackers to execute arbitrary code via crafted header dimensions in a DICOM image file, which triggers a buffer overflow.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:malaterre:grassroots_dicom:*:*:*:*:*:*:*:*
Версия до 2.6.0 (включая)
cpe:2.3:a:malaterre:grassroots_dicom:2.6.1:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.23518
Средний

10 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-189

Связанные уязвимости

CVSS3: 10
ubuntu
около 10 лет назад

Integer overflow in the ImageRegionReader::ReadIntoBuffer function in MediaStorageAndFileFormat/gdcmImageRegionReader.cxx in Grassroots DICOM (aka GDCM) before 2.6.2 allows attackers to execute arbitrary code via crafted header dimensions in a DICOM image file, which triggers a buffer overflow.

CVSS3: 10
debian
около 10 лет назад

Integer overflow in the ImageRegionReader::ReadIntoBuffer function in ...

CVSS3: 10
github
больше 3 лет назад

Integer overflow in the ImageRegionReader::ReadIntoBuffer function in MediaStorageAndFileFormat/gdcmImageRegionReader.cxx in Grassroots DICOM (aka GDCM) before 2.6.2 allows attackers to execute arbitrary code via crafted header dimensions in a DICOM image file, which triggers a buffer overflow.

EPSS

Процентиль: 96%
0.23518
Средний

10 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-189