Release | Version |
---|---|
bullseye | 3.6.5-1 |
bullseye (security) | 3.6.5-1+deb11u3 |
bookworm | 3.6.7-9~deb12u1 |
trixie | 3.6.8-7 |
sid | 3.6.8-7 |
Bug | bullseye | bookworm | trixie | sid | Description |
---|---|---|---|---|---|
CVE-2024-52333 | fixed | vulnerable (no DSA) | fixed | fixed | An improper array index validation vulnerability exists in the determi ... |
CVE-2024-47796 | fixed | vulnerable (no DSA) | fixed | fixed | An improper array index validation vulnerability exists in the nowindo ... |
CVE-2024-34509 | fixed | vulnerable (no DSA) | fixed | fixed | dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid ... |
CVE-2024-34508 | fixed | vulnerable (no DSA) | fixed | fixed | dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid D ... |
CVE-2024-28130 | fixed | vulnerable (no DSA) | fixed | fixed | An incorrect type conversion vulnerability exists in the DVPSSoftcopyV ... |
CVE-2024-27628 | fixed | vulnerable (no DSA) | fixed | fixed | Buffer Overflow vulnerability in DCMTK v.3.6.8 allows an attacker to e ... |
CVE-2022-2120 | vulnerable (no DSA) | fixed | fixed | fixed | OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) i ... |
CVE-2022-2119 | vulnerable (no DSA) | fixed | fixed | fixed | OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SC ... |
Bug | Description |
---|---|
CVE-2022-43272 | DCMTK v3.6.7 was discovered to contain a memory leak via the T_ASC_Ass ... |
CVE-2022-2121 | OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer derefer ... |
CVE-2021-41690 | DCMTK through 3.6.6 does not handle memory free properly. The malloced ... |
CVE-2021-41689 | DCMTK through 3.6.6 does not handle string copy properly. Sending spec ... |
CVE-2021-41688 | DCMTK through 3.6.6 does not handle memory free properly. The object i ... |
CVE-2021-41687 | DCMTK through 3.6.6 does not handle memory free properly. The program ... |
CVE-2019-1010228 | OFFIS.de DCMTK 3.6.3 and below is affected by: Buffer Overflow. The im ... |
CVE-2015-8979 | Stack-based buffer overflow in the parsePresentationContext function i ... |
CVE-2013-6825 | (1) movescu.cc and (2) storescp.cc in dcmnet/apps/, (3) dcmnet/libsrc/ ... |
DSA / DLA | Description |
---|---|
DLA-4038-2 | dcmtk - regression update |
DLA-4038-1 | dcmtk - security update |
DLA-3847-1 | dcmtk - security update |
DSA-3749-1 | dcmtk - security update |
DLA-755-1 | dcmtk - security update |