GHSA-4r83-wp58-872pMediumCVSS 4.3

Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker...

Published
August 7, 2026
Last Modified
August 7, 2026

🔗 CVE IDs covered (1)

📋 Description

Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker-controlled heap out-of-bounds write, which may allow an attacker to remotely execute arbitrary code.

🔗 References (5)