Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2025-48429
CVE-2025-48429
An out-of-bounds read vulnerability exists in the RLECodec::DecodeByStreams functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to leaking heap data. An attacker can provide a malicious file to trigger this vulnerability.
Published Dec 17, 2025
https://talosintelligence.com/vulnerability_reports/TALOS-2025-2214
CVSS Score
Critical
9.1
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
conan
gdcm
3.0.24
rpm
gdcm
3.0.24-4.el10_0
1-2 of 2
CVE-2025-48429 | Components Impacted | Sonatype Guide | Sonatype Guide