Memory Corruption Vulnerability in DCMTK Product
CVE-2025-9732
4.8MEDIUM
What is CVE-2025-9732?
A memory corruption vulnerability exists in the DCMTK library, specifically within the dcmimage include directory related to the dcm2img component. This flaw allows for potential manipulation that could lead to instability in the application. Local access to the system is needed to exploit this vulnerability. It is crucial for users of DCMTK versions up to 3.6.9 to apply the patch identified by commit 7ad81d69b to prevent any adverse effects resulting from this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DCMTK 3.6.0
DCMTK 3.6.1
DCMTK 3.6.2
References
CVSS V4
Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
0x20z (VulDB User)
