Critical severity9.8NVD Advisory· Published Apr 9, 2026· Updated Apr 14, 2026
CVE-2026-5443
CVE-2026-5443
Description
A heap buffer overflow vulnerability exists during the decoding of PALETTE COLOR DICOM images. Pixel length validation uses 32-bit multiplication for width and height calculations. If these values overflow, the validation check incorrectly succeeds, allowing the decoder to read and write to memory beyond allocated buffers.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- kb.cert.org/vuls/id/536588nvdThird Party AdvisoryVDB Entry
- www.machinespirits.denvdNot Applicable
- www.orthanc-server.comnvdProduct
News mentions
0No linked articles in our index yet.