Description
Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker-controlled heap out-of-bounds write, which may allow an attacker to remotely execute arbitrary code.
Published: 2026-08-06
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is an out‑of‑bounds write on the heap that occurs when a RadiAnt DICOM Viewer opens a maliciously crafted DICOM file containing JPEG‑compressed pixel data. Classified as CWE‑787, it can allow an attacker to execute arbitrary code on the host, compromising confidentiality, integrity, and availability.

Affected Systems

The issue affects Medixant RadiAnt DICOM Viewer installations prior to version 2026.1; users should verify that they are running 2026.1 or later to receive the fix.

Risk and Exploitability

The CVSS base score of 5.3 indicates medium severity and no EPSS data is available to gauge current exploitation activity. The flaw is not listed in the CISA KEV catalog. Exploitation requires a victim to open a specially crafted DICOM file, making it a local user‑level threat. The viewer is compiled with Control Flow Guard, DEP, and ASLR, which reduce the likelihood of a successful exploit. Overall exposure is moderate, especially for shared or unattended installations that may accept arbitrary DICOM files.

Generated by OpenCVE AI on August 7, 2026 at 01:21 UTC.

Remediation

Vendor Solution

Users should update to version 2026.1 https://www.radiantviewer.com/files/RadiAnt-2026.1-Setup.exe . It is also recommended to open DICOM files only from trusted and reliable sources. Additionally, the application is compiled with exploit mitigation mechanisms enabled, including Control Flow Guard (CFG), Data Execution Prevention (DEP), and Address Space Layout Randomization (ASLR), which significantly reduces the practical exploitability of the issue.


OpenCVE Recommended Actions

  • Update RadiAnt DICOM Viewer to version 2026.1 or later.
  • Restrict DICOM file opening to trusted and verified sources only.
  • Scan and validate all incoming DICOM files for integrity and authenticity before opening them.
  • Ensure the operating system’s memory safety features such as CFG, DEP, and ASLR remain enabled.

Generated by OpenCVE AI on August 7, 2026 at 01:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 07 Aug 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 07 Aug 2026 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Medixant
Medixant radiant Dicom
Vendors & Products Medixant
Medixant radiant Dicom

Fri, 07 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
Description Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker-controlled heap out-of-bounds write, which may allow an attacker to remotely execute arbitrary code.
Title Medixant RadiAnt DICOM Out-of-bounds write
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Medixant Radiant Dicom
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-08-07T13:19:33.252Z

Reserved: 2026-07-24T22:43:28.491Z

Link: CVE-2026-17264

cve-icon Vulnrichment

Updated: 2026-08-07T13:19:28.659Z

cve-icon NVD

Status : Received

Published: 2026-08-07T00:16:30.600

Modified: 2026-08-07T14:16:57.300

Link: CVE-2026-17264

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-07T09:58:38Z

Weaknesses