An exploitable code execution vulnerability exists in the DICOM packet-parsing functionality of LEADTOOLS libltdic.so, version 20.0.2019.3.15. A specially crafted packet can cause an integer overflow, resulting in heap corruption. An attacker can send a packet to trigger this vulnerability.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0877 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: talos
Published: 2019-12-11T23:46:43
Updated: 2022-04-19T17:33:54
Reserved: 2019-01-04T00:00:00
Link: CVE-2019-5085
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-12-12T00:15:11.487
Modified: 2022-06-17T13:30:24.037
Link: CVE-2019-5085
JSON object: View
Redhat Information
No data.