Grassroot DICOM
cpe:2.3:a:grassroots_dicom_project:grassroots_dicom:*:*:*:*:*:*:*
- 3.024
A vulnerability allowing out-of-bounds read has been identified in Grassroot DICOM version 3.024. This issue arises within the JPEGBITSCodec::InternalCode function, where the absence of proper size checks on memory buffers can lead to information leaks. The vulnerability can be triggered by a specially crafted DICOM file that exploits this flaw during the processing of image pixel data.
Exploitation of this vulnerability causes a segmentation fault, leading to a crash of the application.
The vulnerability can be reproduced by using Grassroot DICOM 3.024 to process a DICOM file that has been crafted to exploit the out-of-bounds read issue. When the file is processed, the JPEGBITSCodec::InternalCode function is called, and the vulnerability manifests as a segmentation fault, crashing the application.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.