Our takeCISA flags Medixant Radiant DICOM ≤2025.2: a crafted DICOM file can crash the viewer via out-of-bounds write (CVSS 4.3). Update if you run it for medical imaging.Cyber Resilience desk
Sources (1)
- cisa_advisories · cisa_advisories
What this means for you — Security leader:Update RadiAnt DICOM Viewer to a version newer than 2025.2 across all endpoints. The CVSS 4.3 DoS risk is low-severity but confirmed by CISA; test any custom DICOM workflows after patching.
What this means for you — Lean IT orgs:If you use RadiAnt DICOM Viewer on any PC, update it past version 2025.2. A malicious image file could crash the program; the fix is free from the vendor.
What this means for you — MSP:Audit client environments for RadiAnt DICOM Viewer <=2025.2 and push the vendor update. Low-impact DoS vector via crafted DICOM files; include in monthly patching if medical imaging software is in scope.
What this means for you — Researcher:CISA ICSMA-26-218-01 documents an out-of-bounds write in Medixant RadiAnt DICOM <=2025.2 that can be triggered by a maliciously crafted file, resulting in application crash.