CVE-2026-87020: Orthanc DICOM Server Integer Overflow or Wraparound
An integer overflow in a specified pitch and buffer-size computation leads to a heap out-of-bounds write when Orthanc DICOM Server decodes an attacker-supplied PNG.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Orthanc DICOM Serverto a version that resolves this vulnerability.Fixed in v1.13.0
Event History
Frequently Asked Questions
Which deployments are exposed?
Orthanc DICOM Server deployments that can be reached over the network and decode attacker-supplied PNG files are in scope. The available data does not state whether any default configuration accepts or processes such files.
What does an attacker need to exploit this issue?
The CVSS vector indicates network access, low privileges, and no user interaction are required. Exploitation involves supplying a crafted PNG for the server to decode.
What is the expected impact of successful exploitation?
Successful exploitation can cause a heap out-of-bounds write. The CVSS vector rates integrity and availability impact as high, with no confidentiality impact indicated.