No advisories yet.
Solution
Update to a DCMTK version that contains commit ca761f7f3dcaaddaa95be87cf5d736138d7c3a9f. As of the publication date, no tagged release after DCMTK 3.7.0 includes this fix, so apply the commit or build from the current master branch.
Workaround
No workaround given by the vendor.
Thu, 08 Oct 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Oct 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Uncontrolled recursion in DcmDicomDir::moveRecordToTree() in dcmdata/libsrc/dcdicdir.cc of OFFIS DCMTK 3.7.0 allows an attacker to cause a denial of service (stack exhaustion and process crash) via a crafted DICOMDIR file with a deeply chained sequence of directory records linked through the Offset of Referenced Lower-Level Directory Entity attribute. Any application that opens the DICOMDIR is affected, including dcmgpdir and media viewers built on DCMTK. The issue is fixed in commit ca761f7f3dcaaddaa95be87cf5d736138d7c3a9f. | |
| Title | Uncontrolled recursion in DCMTK DICOMDIR parsing allows denial of service | |
| First Time appeared |
Offis
Offis dcmtk |
|
| Weaknesses | CWE-674 | |
| CPEs | cpe:2.3:a:offis:dcmtk:3.7.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Offis
Offis dcmtk |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: securin
Published:
Updated: 2026-10-08T14:09:00.382Z
Reserved: 2026-05-05T02:49:00.667Z
Link: CVE-2026-44035
Updated: 2026-10-08T14:08:55.352Z
Status : Received
Published: 2026-10-08T13:17:17.497
Modified: 2026-10-08T13:17:17.497
Link: CVE-2026-44035
No data.
OpenCVE Enrichment
Updated: 2026-10-08T15:15:11Z