CVE-2024-22391: Buffer Overflow
A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22391?
CVE-2024-22391 is classified as a high severity vulnerability due to the potential for memory corruption through a heap-based buffer overflow.
How do I fix CVE-2024-22391?
To fix CVE-2024-22391, update to the latest version of Grassroot DICOM that addresses this vulnerability.
What causes CVE-2024-22391?
CVE-2024-22391 is caused by the LookupTable::SetLUT functionality processing malformed files improperly, leading to a buffer overflow.
Who is affected by CVE-2024-22391?
Users of Grassroot DICOM version 3.0.23 are affected by CVE-2024-22391.
Can CVE-2024-22391 be exploited remotely?
Yes, CVE-2024-22391 can be exploited remotely if an attacker provides a specially crafted malicious file.