A flaw has been found in OFFIS DCMTK up to 3.6.9. The impacted element is the function DcmQueryRetrieveIndexDatabaseHandle::startFindRequest/DcmQueryRetrieveIndexDatabaseHandle::startMoveRequest in the library dcmqrdb/libsrc/dcmqrdbi.cc of the component dcmqrscp. This manipulation causes null pointer dereference. The attack requires local access. Upgrading to version 3.7.0 is sufficient to resolve this issue. Patch name: ffb1a4a37d2c876e3feeb31df4930f2aed7fa030. You should upgrade the affected component.
{
"cwe_ids": [
"CWE-404",
"CWE-476"
],
"cna_assigner": "VulDB",
"unresolved_ranges": [
{
"source": "AFFECTED_FIELD",
"extracted_events": [
{
"introduced": "3.6.1"
},
{
"last_affected": "3.6.1"
}
]
}
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/14xxx/CVE-2025-14841.json"
}{
"source": [
"AFFECTED_FIELD",
"REFERENCES"
],
"extracted_events": [
{
"introduced": "3.6.0"
},
{
"last_affected": "3.6.0"
},
{
"introduced": "3.6.2"
},
{
"last_affected": "3.6.2"
},
{
"introduced": "3.6.3"
},
{
"last_affected": "3.6.3"
},
{
"introduced": "3.6.4"
},
{
"last_affected": "3.6.4"
},
{
"introduced": "3.6.5"
},
{
"last_affected": "3.6.5"
},
{
"introduced": "3.6.6"
},
{
"last_affected": "3.6.6"
},
{
"introduced": "3.6.7"
},
{
"last_affected": "3.6.7"
},
{
"introduced": "3.6.8"
},
{
"last_affected": "3.6.8"
},
{
"introduced": "3.6.9"
},
{
"last_affected": "3.6.9"
}
]
}
[
{
"target": {
"file": "dcmqrdb/libsrc/dcmqrdbi.cc"
},
"deprecated": false,
"id": "CVE-2025-14841-0d7acaa1",
"signature_version": "v1",
"digest": {
"line_hashes": [
"262739012972748116420404488377187273606",
"9124240746378094154941344543239262376",
"179827960402158148332841098675456753135",
"291237238248850997824927142513881555748",
"23918754016426770445371671689487079123",
"262739012972748116420404488377187273606",
"9124240746378094154941344543239262376",
"179827960402158148332841098675456753135",
"291237238248850997824927142513881555748",
"23918754016426770445371671689487079123"
],
"threshold": 0.9
},
"signature_type": "Line",
"source": "https://github.com/dcmtk/dcmtk/commit/ffb1a4a37d2c876e3feeb31df4930f2aed7fa030"
},
{
"target": {
"file": "dcmqrdb/libsrc/dcmqrdbi.cc",
"function": "DcmQueryRetrieveIndexDatabaseHandle::startFindRequest"
},
"deprecated": false,
"id": "CVE-2025-14841-2c2fbace",
"signature_version": "v1",
"digest": {
"function_hash": "299680055666261871280464551333849947017",
"length": 5685.0
},
"signature_type": "Function",
"source": "https://github.com/dcmtk/dcmtk/commit/ffb1a4a37d2c876e3feeb31df4930f2aed7fa030"
},
{
"target": {
"file": "dcmqrdb/libsrc/dcmqrdbi.cc",
"function": "DcmQueryRetrieveIndexDatabaseHandle::startMoveRequest"
},
"deprecated": false,
"id": "CVE-2025-14841-46e76d00",
"signature_version": "v1",
"digest": {
"function_hash": "224172098353491522277283939590438813527",
"length": 5793.0
},
"signature_type": "Function",
"source": "https://github.com/dcmtk/dcmtk/commit/ffb1a4a37d2c876e3feeb31df4930f2aed7fa030"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-14841.json"
"2026-08-12T15:13:39Z"