CNNVD-202512-3721 Information

CNNVD ID

CNNVD-202512-3721

CVE-2025-14841

  • CNNVD Published: 2025-12-18

Description (Chinese)

OFFIS DCMTK是德国OFFIS公司的一个实现大部分 DICOM 标准的库和应用程序的集合。用于检查、构建和转换 DICOM 图像文件、处理离线媒体、通过网络连接发送和接收图像的软件,以及演示图像存储和工作列表服务器。 OFFIS DCMTK 3.6.9及之前版本存在代码问题漏洞,该漏洞源于dcmqrdb/libsrc/dcmqrdbi.cc文件中函数存在空指针取消引用。

Description (English)

OFFIS DCMTK is a collection of libraries and applications that achieve most of the DICOM standards by OFFIS, Germany. Software for checking, constructing and converting DICOM image files, processing offline media, sending and receiving images via network connections, and displaying image storage and worklist servers. There is a code problem loophole in the OFFIS DCMTTK 3.6.9 and earlier versions, which results from the empty pointer unreferenced function in dcmqrdb/libsrc/dcmqrdbi.cc file.

Hazard Level

Critical

Vulnerability Type

代码问题

Affected Vendor

Omeka

Published

2025-12-18

Last Modified

2026-02-24

References

https://github.com/DCMTK/dcmtk/commit/ffb1a4a37d2c876e3feeb31df4930f2aed7fa030 https://github.com/DCMTK/dcmtk/releases/tag/DCMTK-3.7.0 https://support.dcmtk.org/redmine/issues/1183 https://vuldb.com/?ctiid.337004 https://vuldb.com/?id.337004 https://vuldb.com/?submit.714605 https://vuldb.com/?submit.714634

Patch

https://github.com/DCMTK/dcmtk/releases

Share on: