CYBERSECURITYTRACKER
TRACKING7,218 stories in this site build1,512 vulnerability news stories in this site build
Permanent story citation

Medixant RadiAnt DICOM

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4004

As cited

Copy frozen at (site build).

vulnerabilities

Medixant RadiAnt DICOM

Medixant RadiAnt DICOM contains an out-of-bounds write vulnerability (CVE-2026-17264) in versions 2025.2 and earlier that can be triggered by opening a maliciously crafted DICOM file with malicious JPEG-compressed pixel data. The vulnerability carries a CVSS score of 4.3 and could allow arbitrary code execution, though the application includes exploit mitigation mechanisms like Control Flow Guard, Data Execution Prevention, and Address Space Layout Randomization. Users should update to version 2026.1 and open DICOM files only from trusted sources.

Why it matters: Healthcare organizations using RadiAnt DICOM must update immediately to version 2026.1 to prevent potential remote code execution through malicious DICOM files that staff may receive or encounter.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Medixant RadiAnt DICOM

Medixant RadiAnt DICOM contains an out-of-bounds write vulnerability (CVE-2026-17264) in versions 2025.2 and earlier that can be triggered by opening a maliciously crafted DICOM file with malicious JPEG-compressed pixel data. The vulnerability carries a CVSS score of 4.3 and could allow arbitrary code execution, though the application includes exploit mitigation mechanisms like Control Flow Guard, Data Execution Prevention, and Address Space Layout Randomization. Users should update to version 2026.1 and open DICOM files only from trusted sources.

Why it matters: Healthcare organizations using RadiAnt DICOM must update immediately to version 2026.1 to prevent potential remote code execution through malicious DICOM files that staff may receive or encounter.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary