CVE-2024-23914

Use of Externally-Controlled Format String vulnerability in Merge DICOM Toolkit C/C++ on Windows. When MC_Open_Association() function is used to open DICOM Association and gets DICOM Application Context Name with illegal characters, it might result in an unhandled exception.
Configurations

No configuration.

History

21 Nov 2024, 08:58

Type Values Removed Values Added
References () https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-23914 - () https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-23914 -
Summary
  • (es) Uso de la vulnerabilidad de cadena de formato controlada externamente en Merge DICOM Toolkit C/C++ en Windows. Cuando se utiliza la función MC_Open_Association() para abrir la Asociación DICOM y obtiene el Nombre de contexto de la aplicación DICOM con caracteres ilegales, puede resultar en una excepción no controlada.

03 May 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-03 09:15

Updated : 2024-11-21 08:58


NVD link : CVE-2024-23914

Mitre link : CVE-2024-23914

CVE.ORG link : CVE-2024-23914


JSON object : View

Products Affected

No product.

CWE
CWE-134

Use of Externally-Controlled Format String