Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
OFFIS DCMTK Toolkit Missing Release of Memory after Effective Lifetime
Vulnerability Description
An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
在移除最后引用时对内存的释放不恰当(内存泄露)
Vulnerability Title
DCMTK 资源管理错误漏洞
Vulnerability Description
DCMTK DCMTK是DCMTK组织的一套影像医学通信与数据处理的工具集。 DCMTK 3.7.0及之前版本存在资源管理错误漏洞,该漏洞源于内存泄漏,可能导致未经身份验证的远程攻击者反复发送特制连接请求,导致内存不断增长,服务最终被终止,停止接受连接直至操作员重启。
CVSS Information
N/A
Vulnerability Type
N/A