An out-of-bounds read vulnerability exists in the RLECodec::DecodeByStreams functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to leaking heap data. An attacker can provide a malicious file to trigger this vulnerability.
{ "versions": [ { "introduced": "0" }, { "last_affected": "3.0.24" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-48429.json"