PT-2024-25941 · Dcmtk+5 · Dcmtk+5

Nils Bars

·

Published

2024-03-13

·

Updated

2025-09-10

·

CVE-2024-34508

CVSS v2.0

5.2

Medium

VectorAV:A/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions DCMTK versions prior to 3.6.9
Description The issue is related to a segmentation fault in dcmnet, a component of DCMTK, which occurs when an invalid DIMSE message is received.
Recommendations For versions prior to 3.6.9, update to version 3.6.9 or later to resolve the issue.

Exploit

Fix

NULL Pointer Dereference

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-03917
CVE-2024-34508
DLA-3847-1
DLA-4038-1
DLA-4038-2
MGASA-2024-0251
OPENSUSE-SU-2025:0053-1
USN-7010-1

Affected Products

Astra Linux
Dcmtk
Debian
Linuxmint
Red Os
Ubuntu