Security Advisory

CVE-2019-5092

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-12-11 23:47:33
Last updated 2024-08-04 19:47:55
Assigner talos
CVSS score 8.8
State PUBLISHED

Description

An exploitable heap out of bounds write vulnerability exists in the UI tag parsing functionality of the DICOM image format of LEADTOOLS 20.0.2019.3.15. A specially crafted DICOM image can cause an offset beyond the bounds of a heap allocation to be written, potentially resulting in code execution. An attacker can specially craft a DICOM image to trigger this vulnerability.