VU#536588: Multiple Heap Buffer Overflows in Orthanc DICOM Server
2026-04-17T20:52:08Z•806f6819cefb4ee95c6cb1de492544a73126d807b9a837f0c8e4081b36cb31df
DICOMDoSKubernetesPDFRCESSRFcontainer-registrydecompression-bombgziphardcoded-credentialsheap-buffer-overflowinput-validationinteger-overflowlocal-privilege-escalationlog-injectionout-of-bounds-readsupply-chainzip-bomb
What happened
The document aggregates multiple vulnerabilities across diverse projects (Orthanc, MuPDF, Kyverno, CrewAI, IDrive, Harbor, LibreChat, etc.). Issues include heap buffer overflows and out-of-bounds reads in Orthanc DICOM parsing and archive/image handling (including gzip/ZIP decompression-bomb behavior), an integer overflow leading to heap out-of-bounds write in MuPDF image decoding, SSRF in Kyverno, multiple flaws in CrewAI including a Code Interpreter RCE vector and SSRF, a local privilege escalation in IDrive allowing NT AUTHORITY\SYSTEM execution, hard-coded/default Harbor admin credentials,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 806f6819cefb4ee95c6cb1de492544a73126d807b9a837f0c8e4081b36cb31df
- Enrichment time
- 2026-04-17T20:52:08Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.