CVE-2024-27629
EUVD-2024-2482328.06.2024, 19:15
An issue in dc2niix before v.1.0.20240202 allows a local attacker to execute arbitrary code via the generated file name is not properly escaped and injected into a system call when certain types of compression are used.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| rordenlab | dcm2niix | 𝑥 < 1.0.20240202 | ADP |
Debian Releases
Ubuntu Releases