Integer overflow in the ImageRegionReader::ReadIntoBuffer function in MediaStorageAndFileFormat/gdcmImageRegionReader.cxx in Grassroots DICOM (aka GDCM) before 2.6.2 allows attackers to execute arbitrary code via crafted header dimensions in a DICOM image file, which triggers a buffer overflow.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "gdcm-doc" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-cil" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-cil-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-java" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-java-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-tools" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm-tools-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm2-dev" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm2-dev-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm2.2" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm2.2-dbg" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libgdcm2.2-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-cil" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-cil-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-java" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-java-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-tools" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm-tools-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm2-dev" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm2-dev-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm2.2" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "libvtkgdcm2.2-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "php5-gdcm" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "php5-gdcm-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "php5-vtkgdcm" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "php5-vtkgdcm-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "python-gdcm" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "python-gdcm-dbgsym" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "python-vtkgdcm" }, { "binary_version": "2.2.4-1.1ubuntu4+esm1", "binary_name": "python-vtkgdcm-dbgsym" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.6.2-2", "binary_name": "gdcm-doc" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm-cil" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm-cil-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm-tools" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm-tools-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm2-dev" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm2-dev-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm2.6" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm2.6-dbg" }, { "binary_version": "2.6.2-2", "binary_name": "libgdcm2.6-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm-cil" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm-cil-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm-tools" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm-tools-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm2-dev" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm2-dev-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm2.6" }, { "binary_version": "2.6.2-2", "binary_name": "libvtkgdcm2.6-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "php5-gdcm" }, { "binary_version": "2.6.2-2", "binary_name": "php5-gdcm-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "php5-vtkgdcm" }, { "binary_version": "2.6.2-2", "binary_name": "php5-vtkgdcm-dbgsym" }, { "binary_version": "2.6.2-2", "binary_name": "python-gdcm" }, { "binary_version": "2.6.2-2", "binary_name": "python-vtkgdcm" } ] }