VDB
CVE-2022-2121
CVE-2022-2121
PUBLISHED
CVSS 7.5 HIGH
OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, which may result in a denial-of-service condition.
EPSS 0.76% · 52.8th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.76%
52.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| offis | dcmtk | 0 |
| offis | dcmtk | 0 |
| OFFIS | DCMTK | unspecified |
Timeline
- Jun 24, 2022 CVE Published
- Jun 25, 2022 EPSS Score
- Jul 5, 2022 CVE Updated
- Aug 13, 2022 EPSS Score
- Sep 30, 2022 EPSS Score
- Nov 17, 2022 EPSS Score
- Jan 4, 2023 EPSS Score
- Feb 21, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 10, 2023 EPSS Score
- Jul 14, 2023 EPSS Score
- Aug 31, 2023 EPSS Score