CVE-2023-5059: Santesoft Sante FFT Imaging Out-of-bounds Read
Published Oct 19, 2023
·Updated
Santesoft Sante FFT Imaging lacks proper validation of user-supplied data when parsing DICOM files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
1 affected component
Santesoft FFT Imaging<1.4.1
Remediation
Information
Santesoft has released an updated version of their product and recommends users update to Sante FFT Imaging to v1.4.1 https://santesoft.com/win/sante-fft-imaging/download.html .
Event History
Oct 19, 2023
CVE Published
via MITRE·05:27 PM
Data Sourced
via MITRE·05:27 PM
RemedyDescriptionSeverityWeakness
Data Sourced
06:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of the Santesoft Sante FFT Imaging vulnerability?
The vulnerability ID of the Santesoft Sante FFT Imaging vulnerability is CVE-2023-5059.
2
What is the severity of CVE-2023-5059?
The severity of CVE-2023-5059 is high.
3
How does the Santesoft Sante FFT Imaging vulnerability occur?
The vulnerability occurs due to the lack of proper validation of user-supplied data when parsing DICOM files in Santesoft Sante FFT Imaging.
4
What is the impact of CVE-2023-5059?
The impact of CVE-2023-5059 is the potential execution of arbitrary code in the context of the current process.
5
How can I mitigate the Santesoft Sante FFT Imaging vulnerability?
To mitigate the vulnerability, users should update to version 1.4.2 or later of Santesoft Sante FFT Imaging.