First published: Mon Jul 22 2019(Updated: )
Last updated 24 July 2024
Credit: josh@bress.net josh@bress.net
Affected Software | Affected Version | How to fix |
---|---|---|
debian/dcmtk | 3.6.5-1 3.6.7-9~deb12u1 3.6.8-6 | |
DCMTK | <=3.6.3 | |
Red Hat Fedora | =29 | |
Red Hat Fedora | =30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-1010228 has a severity rating that indicates possible code execution and confirmed denial of service.
To fix CVE-2019-1010228, update to versions DCMTK 3.6.5-1, 3.6.7-9~deb12u1, or 3.6.8-6.
The affected component is DcmRLEDecoder::decompress() in DCMTK versions 3.6.3 and below.
CVE-2019-1010228 can be exploited through many scenarios of DICOM file processing.
CVE-2019-1010228 affects OFFIS DCMTK versions up to and including 3.6.3, and certain Fedora releases.