itk is vulnerable to Out-of-bounds Read
60
Medium Risk
An out-of-bounds read vulnerability exists in the underlying Grassroots DICOM library (GDCM), specifically in the SequenceOfFragments::ReadValue method. The flaw is triggered when the library parses a malformed DICOM file containing encapsulated PixelData fragments (compressed image data stored across multiple fragments). Improper bounds checking allows the parser to read beyond the intended memory region, which may lead to application crashes, information disclosure, or other undefined behavior when handling attacker-controlled DICOM files.
You're affected if you are using a version which is within vulnerability ranges.
itk is vulnerable to Out-of-bounds Read in versions 4.0.0 - 5.4.4.
Upgrade itk library to patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant