First published: Fri Mar 01 2024(Updated: )
MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior contain a lack of proper validation of user-supplied data, which could result in memory corruption within the application.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
MicroDicom DICOM Viewer | <2023.3 | |
<2024.1 |
MicroDicom has provided a fix and recommends users upgrade to 2024.1 https://www.microdicom.com/ . For additional assistance, contact MicroDicom https://www.microdicom.com/contacts.html directly
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25578 has been classified with a high severity due to its potential for memory corruption.
To fix CVE-2024-25578, update your MicroDicom DICOM Viewer to version 2023.4 or later.
MicroDicom DICOM Viewer versions 2023.3 and prior are affected by CVE-2024-25578.
CVE-2024-25578 is a vulnerability that involves a lack of proper validation of user-supplied data, leading to memory corruption.
The details on whether CVE-2024-25578 can be exploited remotely are not specified, but memory corruption vulnerabilities often pose a risk for remote exploitation.