CVE-2025-25474: Buffer Overflow
Published Feb 18, 2025
·Updated
DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.
Affected Software
3 affected components
DCMTK DCMTK>=3.6.9+
OFFIS DCMTK=3.6.9
Debian Debian Linux=11.0
Remediation
Event History
Feb 18, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25474?
CVE-2025-25474 is classified as a high severity vulnerability due to its potential to cause a buffer overflow.
2
How do I fix CVE-2025-25474?
To fix CVE-2025-25474, users should update to a patched version of DCMTK that addresses the buffer overflow vulnerability.
3
What systems are affected by CVE-2025-25474?
CVE-2025-25474 affects all versions of DCMTK from 3.6.9 and above.
4
What component is involved in CVE-2025-25474?
CVE-2025-25474 involves a buffer overflow vulnerability in the /dcmimgle/diinpxt.h component of DCMTK.
5
Is there a known exploit for CVE-2025-25474?
As of now, there are no publicly available exploits for CVE-2025-25474, but potential for exploitation exists.