Memory Corruption Issue in Sante PACS Server DCM File Parsing
CVE-2025-0571

6.5MEDIUM

Key Information:

Vendor

Sante

Vendor
CVE Published:
30 January 2025

What is CVE-2025-0571?

The vulnerability arises from inadequate validation during DCM file parsing within the Sante PACS Server Web Portal. This flaw permits remote attackers to exploit the system, leading to memory corruption and potentially inducing a denial-of-service condition. Authentication is a prerequisite for execution, emphasizing the need for secure user access control.

Affected Version(s)

PACS Server 4.0.9

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-0571 : Memory Corruption Issue in Sante PACS Server DCM File Parsing