ZDI-23-527: Sante DICOM Viewer Pro DCM File Parsing Use-After-Free Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Viewer Pro. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-527?
The severity of ZDI-23-527 is medium as it allows remote attackers to disclose sensitive information.
How do I fix ZDI-23-527?
To fix ZDI-23-527, ensure that you are using the latest version of Sante DICOM Viewer Pro and apply any available security patches.
Who is affected by ZDI-23-527?
ZDI-23-527 affects installations of Sante DICOM Viewer Pro when users interact with malicious content.
What do attackers need to exploit ZDI-23-527?
Attackers need user interaction, such as visiting a malicious page or opening a malicious file, to exploit ZDI-23-527.
What type of information can be disclosed due to ZDI-23-527?
ZDI-23-527 can lead to the disclosure of sensitive information from the affected installations of Sante DICOM Viewer Pro.