Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3847-1 | dcmtk security update |
Debian DLA |
DLA-4038-1 | dcmtk security update |
EUVD |
EUVD-2024-25277 | An incorrect type conversion vulnerability exists in the DVPSSoftcopyVOI_PList::createFromImage functionality of OFFIS DCMTK 3.6.8. A specially crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. |
Ubuntu USN |
USN-7010-1 | DCMTK vulnerabilities |
Tue, 04 Nov 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:offis:dcmtk:*:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 27 Jun 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Debian
Debian debian Linux Offis Offis dcmtk |
|
| CPEs | cpe:2.3:a:offis:dcmtk:3.6.8:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Debian
Debian debian Linux Offis Offis dcmtk |
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-11-04T17:19:39.195Z
Reserved: 2024-03-07T10:05:15.275Z
Link: CVE-2024-28130
Updated: 2025-11-03T20:37:08.301Z
Status : Modified
Published: 2024-04-23T15:15:49.390
Modified: 2025-11-04T18:16:17.513
Link: CVE-2024-28130
No data.
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN