A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.
History

Thu, 27 Mar 2025 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Xmedcon Project
Xmedcon Project xmedcon
CPEs cpe:2.3:a:xmedcon_project:xmedcon:0.25.0:*:*:*:*:*:*:*
Vendors & Products Xmedcon Project
Xmedcon Project xmedcon

Fri, 21 Mar 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 21 Mar 2025 05:15:00 +0000

Type Values Removed Values Added
Description A vulnerability has been found in xmedcon 0.25.0 and classified as problematic. Affected by this vulnerability is the function malloc of the component DICOM File Handler. The manipulation leads to integer underflow. The attack can be launched remotely. Upgrading to version 0.25.1 is able to address this issue. It is recommended to upgrade the affected component.
Title xmedcon DICOM File malloc integer underflow
Weaknesses CWE-189
CWE-191
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:N/I:N/A:P'}

cvssV3_0

{'score': 4.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'}

cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-03-21T13:58:57.379Z

Reserved: 2025-03-20T22:54:26.984Z

Link: CVE-2025-2581

cve-icon Vulnrichment

Updated: 2025-03-21T13:58:51.343Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-21T05:15:38.280

Modified: 2025-03-27T13:24:49.403

Link: CVE-2025-2581

cve-icon Redhat

No data.