In Santesoft Sante FFT Imaging versions 1.4.1 and prior once a user opens a malicious DCM file on affected FFT Imaging installations, a local attacker could perform an out-of-bounds write, which could allow for arbitrary code execution.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17430 | In Santesoft Sante FFT Imaging versions 1.4.1 and prior once a user opens a malicious DCM file on affected FFT Imaging installations, a local attacker could perform an out-of-bounds write, which could allow for arbitrary code execution. |
Fixes
Solution
Santesoft released an updated version of their product and recommends users update Sante FFT Imaging to v1.4.2 https://santesoft.com/win/sante-fft-imaging/download.html or later.
Workaround
No workaround given by the vendor.
References
History
Tue, 18 Feb 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Santesoft
Santesoft fft Imaging |
|
| CPEs | cpe:2.3:a:santesoft:fft_imaging:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Santesoft
Santesoft fft Imaging |
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-12T20:31:28.073Z
Reserved: 2024-02-21T00:48:26.810Z
Link: CVE-2024-1696
Updated: 2024-08-01T18:48:21.673Z
Status : Analyzed
Published: 2024-03-11T17:15:46.007
Modified: 2025-02-18T13:43:18.590
Link: CVE-2024-1696
No data.
OpenCVE Enrichment
No data.
EUVD