CVE-2024-1453: Santesoft Sante DICOM Viewer Pro Out-of-Bounds Read
Published Mar 1, 2024
·Updated
In Sante DICOM Viewer Pro versions 14.0.3 and prior, a user must open a malicious DICOM file, which could allow a local attacker to disclose information or execute arbitrary code.
Affected Software
1 affected component
Santesoft DICOM Viewer Pro<14.0.4
Remediation
Information
Santesoft released an updated version of their product and recommends updating Sante DICOM Viewer Pro to v14.0.4 https://santesoft.com/win/sante-dicom-viewer-pro/download.html or later.
Event History
Mar 1, 2024
CVE Published
via MITRE·06:56 PM
Data Sourced
via MITRE·06:56 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-1453?
CVE-2024-1453 is considered a high-severity vulnerability due to its potential to allow local attackers to execute arbitrary code.
2
How do I fix CVE-2024-1453?
To fix CVE-2024-1453, update Sante DICOM Viewer Pro to version 14.0.4 or later.
3
What versions of Sante DICOM Viewer Pro are affected by CVE-2024-1453?
Sante DICOM Viewer Pro versions 14.0.3 and earlier are affected by CVE-2024-1453.
4
What kind of attack does CVE-2024-1453 enable?
CVE-2024-1453 enables a local attacker to disclose sensitive information or execute arbitrary code by opening a malicious DICOM file.
5
Is there a workaround for CVE-2024-1453?
There are no known workarounds for CVE-2024-1453; updating to the latest version is recommended.