CVE-2025-48429: Buffer Overflow
An out-of-bounds read vulnerability exists in the RLECodec::DecodeByStreams functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to leaking heap data. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48429?
CVE-2025-48429 is classified as a high-severity vulnerability due to the potential for an attacker to leak sensitive heap data.
How do I fix CVE-2025-48429?
To mitigate CVE-2025-48429, ensure that you update Grassroot DICOM to the latest version that addresses this vulnerability.
What can happen if CVE-2025-48429 is exploited?
If exploited, CVE-2025-48429 can result in the exposure of sensitive information stored in the application's memory.
Who is affected by CVE-2025-48429?
Users of Grassroot DICOM version 3.024 are affected by CVE-2025-48429 and should take protective measures.
Is CVE-2025-48429 related to file handling?
Yes, CVE-2025-48429 is related to the handling of specially crafted DICOM files that can trigger the out-of-bounds read condition.