CVE-2024-23913
A "CWE-823: Use of Out-of-range Pointer Offset" vulnerability affects the MC_XML_To_Message function located in Merative Merge DICOM Toolkit C/C++ on Windows
When deprecated MC_XML_To_Message function is used to read a malformed DICOM XML file, it might result in memory access violation.
April 30, 2024
This issue affects: Merative Merge DICOM Toolkit C/C++ on Windows from v5.0.0 up to v.5.17.0
CVE-2024-23913
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
4.0
Update the Merative Merge DICOM Toolkit C/C++ to the 5.18.0 release
Gabriele Quagliarella of Nozomi Networks
Nozomi Networks Labs curates threat and vulnerability insights that are continuously fed into the Nozomi Networks platform to ensure our sensors can detect existing and emerging threats and vulnerabilities that threaten customers environments.
Learn more

