CVE-2021-21807: Integer Overflow
An integer overflow vulnerability exists in the DICOM parsedicommetainfo functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to a stack-based buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-21807.
What is the severity of CVE-2021-21807?
The severity of CVE-2021-21807 is critical with a score of 9.8.
How does the vulnerability in Accusoft ImageGear 19.9 occur?
The vulnerability occurs due to an integer overflow in the DICOM parse_dicom_meta_info functionality.
What is the impact of this vulnerability?
This vulnerability can lead to a stack-based buffer overflow when a specially crafted malformed file is provided.
Is there any fix available for this vulnerability?
At the moment, there is no specific fix available for this vulnerability. It is recommended to follow the guidance provided by Accusoft or the relevant security advisory.