Cyber Resilience
← All news
Confirmed

Orthanc DICOM Server

Our takeCISA reports active exploitation of a heap overflow in Orthanc DICOM Server <1.13.0: an authenticated remote attacker can crash the process via a crafted PNG or JPEG. Update to 1.13.0 or later now if you run it yourself.
Sources (1)
What this means for you — Security leader:CISA reports active exploitation of a heap overflow in Orthanc DICOM Server <1.13.0 that lets an authenticated attacker crash the process via a malicious PNG or JPEG. Update to 1.13.0 or later immediately if you self-host Orthanc for medical imaging.
What this means for you — Lean IT orgs:If you run your own Orthanc DICOM Server for medical images, update it to version 1.13.0 or newer right away. This flaw lets an attacker crash the system with a bad image.
What this means for you — MSP:Check every client running self-hosted Orthanc DICOM Server and upgrade any instance below 1.13.0; CISA states this flaw is being exploited in the wild to cause denial of service via crafted images.
What this means for you — Researcher:CISA reports active exploitation of a heap-based buffer overflow in Orthanc DICOM Server <1.13.0 triggered by malicious PNG/JPEG images.