Impact
An integer overflow occurs during the computation of pitch and buffer size when the Orthanc DICOM Server decodes a PNG supplied by an attacker. The overflow results in a heap out‑of‑bounds write, which compromises the integrity of heap memory and may lead to arbitrary code execution or uncontrolled crash of the server.
Affected Systems
Orthanc DICOM Server is affected; all deployments running prior to version 1.13.0 are vulnerable.
Risk and Exploitability
The CVSS score of 7.2 indicates a high severity. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is remote, where an attacker directly supplies a malicious PNG to the server, with no additional prerequisites specified in the advisory.
OpenCVE Enrichment