Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2025-25474
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2025-25474
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-25474.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-25474
Downstream
DEBIAN-CVE-2025-25474
DLA-4227-1
UBUNTU-CVE-2025-25474
openSUSE-SU-2025:0068-1
openSUSE-SU-2025:14823-1
Related
MGASA-2025-0076
openSUSE-SU-2025:0068-1
openSUSE-SU-2025:14823-1
Published
2025-02-18T23:15:10Z
Modified
2025-11-06T01:20:24.199990Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.
References
https://lists.debian.org/debian-lts-announce/2025/06/msg00025.html
https://git.dcmtk.org/?p=dcmtk.git;a=commit;h=1d205bcd307164c99e0d4bbf412110372658d847
Affected packages
Git
/
github.com/dcmtk/dcmtk
Affected ranges
Type
GIT
Repo
https://github.com/dcmtk/dcmtk
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
ac002900cab167509881e5b837cdef5dcb07cd37
Affected versions
CAR96-3.*
CAR96-3.0.1
CAR96-3.0.2
DCMTK-3.*
DCMTK-3.1.0
DCMTK-3.1.1
DCMTK-3.1.2
DCMTK-3.2.0
DCMTK-3.2.1
DCMTK-3.3.0
DCMTK-3.3.1
DCMTK-3.4.0
DCMTK-3.4.1
DCMTK-3.4.2
DCMTK-3.5.0
DCMTK-3.5.1
DCMTK-3.5.2
DCMTK-3.5.2a
DCMTK-3.5.3
DCMTK-3.5.4
DCMTK-3.6.0
DCMTK-3.6.1_20110225
DCMTK-3.6.1_20110519
DCMTK-3.6.1_20110707
DCMTK-3.6.1_20110922
DCMTK-3.6.1_20111208
DCMTK-3.6.1_20120222
DCMTK-3.6.1_20120515
DCMTK-3.6.1_20120831
DCMTK-3.6.1_20121102
DCMTK-3.6.1_20131114
DCMTK-3.6.1_20140617
DCMTK-3.6.1_20150217
DCMTK-3.6.1_20150629
DCMTK-3.6.1_20150924
DCMTK-3.6.1_20160216
DCMTK-3.6.1_20160630
DCMTK-3.6.1_20161102
DCMTK-3.6.1_20170228
DCMTK-3.6.2
DCMTK-3.6.3
DCMTK-3.6.4
DCMTK-3.6.5
DCMTK-3.6.5+_20191213
DCMTK-3.6.6
DCMTK-3.6.7
DCMTK-3.6.8
DCMTK-3.6.9
CVE-2025-25474 - OSV