When MC_Open_File() function is used to read a malformed DICOM data, it might result in over-reading memory buffer and could cause memory access violation.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The issue is resolved in Merge DICOM Toolkit 5.18.0 release.
Vendor Workaround
As a temporary solution, until a patch is released, it is highly recommended to provide to the MC_Open_File() function only trusted DICOM files.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21342 | Out-of-bounds Read vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_File() function is used to read a malformed DICOM data, it might result in over-reading memory buffer and could cause memory access violation. |
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2024-08-01T23:13:08.328Z
Reserved: 2024-01-23T15:02:55.721Z
Link: CVE-2024-23912
Updated: 2024-08-01T23:13:08.328Z
Status : Deferred
Published: 2024-05-03T09:15:07.737
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-23912
No data.
OpenCVE Enrichment
No data.
EUVD