VYPR
High severity7.8OSV Advisory· Published Jun 28, 2024· Updated Apr 15, 2026

CVE-2024-27629

CVE-2024-27629

Description

An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Rordenlab/Dcm2niixOSV2 versions
    20160606, v1.0.20160930, v1.0.20161101, …+ 1 more
    • (no CPE)range: 20160606, v1.0.20160930, v1.0.20161101, …
    • (no CPE)range: <1.0.20240202

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.