CVE WATCH / VULNERABILITY DETAIL

CVE-2026-44036

MEDIUMCVSS 5.5NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

Uncontrolled mutual recursion between DcmXMLParseHelper::parseDataSet() and DcmXMLParseHelper::parseSequence() in the XML-to-DICOM converter (dcmdata/libdcxml/xml2dcm.cc) of OFFIS DCMTK 3.7.0 allows an attacker to cause a denial of service (stack exhaustion and process crash) via a crafted XML file

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-44036 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-44036

MEDIUMCVSS 5.5NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

Uncontrolled mutual recursion between DcmXMLParseHelper::parseDataSet() and DcmXMLParseHelper::parseSequence() in the XML-to-DICOM converter (dcmdata/libdcxml/xml2dcm.cc) of OFFIS DCMTK 3.7.0 allows an attacker to cause a denial of service (stack exhaustion and process crash) via a crafted XML file

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]