Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-22373

Опубликовано: 25 апр. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.1

Описание

An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

РелизСтатусПримечание
devel

not-affected

3.0.24-3build1
esm-apps-legacy/xenial

needed

esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/noble

needed

esm-apps/resolute

not-affected

3.0.24-3build1
esm-apps/xenial

ignored

end of ESM support, was needed
esm-infra-legacy/trusty

needed

focal

ignored

end of standard support, was needs-triage

Показывать по

EPSS

Процентиль: 72%
0.01474
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
больше 2 лет назад

An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.1
debian
больше 2 лет назад

An out-of-bounds write vulnerability exists in the JPEG2000Codec::Deco ...

suse-cvrf
больше 2 лет назад

Security update for gdcm

suse-cvrf
больше 2 лет назад

Security update for gdcm

CVSS3: 8.1
github
больше 2 лет назад

An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 72%
0.01474
Низкий

8.1 High

CVSS3