CVE-2020-6152: Critical severity accusoft imagegear vulnerability
Published Sep 1, 2020
·Updated
A code execution vulnerability exists in the DICOM parsedicommetainfo functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause an out-of-bounds write. An attacker can trigger this vulnerability by providing a victim with a malicious DICOM file.
Affected Software
1 affected component
Accusoft ImageGear=19.7.0
Event History
Sep 1, 2020
CVE Published
via MITRE·08:54 PM
Data Sourced
via MITRE·08:54 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-6152.
2
What is the severity of CVE-2020-6152?
The severity of CVE-2020-6152 is critical.
3
What is the affected software?
The affected software is AccuSoft ImageGear 19.7.
4
How does this vulnerability manifest?
This vulnerability manifests as a code execution vulnerability in the DICOM parse_dicom_meta_info functionality of AccuSoft ImageGear 19.7.
5
How can this vulnerability be exploited?
This vulnerability can be exploited by providing a victim with a malicious DICOM file.