A heap overflow vulnerability was demonstrated in Orthanc servers when processing malformed DICOM files during image uploads, resulting in an out-of-bounds write. This vulnerability arises from improper handling of the DICOM file format, which can be exploited to trigger vulnerable decoders in PACS systems.
| Vendor | Product | Versions |
|---|---|---|
| — | orthanc | — |