GDCM 2.6.0 / 2.6.1 Out-Of-Bounds Read

Discussion in 'News Aggregator' started by Packet Storm, 12 Jan 2016.

  1. Packet Storm

    Packet Storm Guest

    GDCM versions 2.6.0 and 2.6.1 suffer from an out-of-bounds read due to missing checks. The vulnerability occurs during the decoding of JPEG-LS images when the dimensions of the embedded JPEG-LS image (as specified in the JPEG headers) are smaller than the ones of the selected region (set by gdcm::ImageRegionReader::SetRegion and usually based on DICOM header values).

    Continue reading...
     

Share This Page

Loading...