7.4
/ 10
HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
An out-of-bounds read vulnerability exists in the Overlay::GrabOverlayFromPixelData functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to an information leak. An attacker can provide a malicious file to trigger this vulnerability.
Basic Information
ID
CVE-2025-52582
Source
talos
Published
Dec 16, 2025 at 21:32
Affected Product
Vendor
Grassroot DICOM
Product
Grassroot DICOM
Version
3.024
Affected Versions
Grassroot DICOM Grassroot DICOM 3.024