AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-5441

HIGH · CVSS 7.1 EPSS 0.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-04-09 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.1. See the original NVD description below for full technical details.

CVE
CVE-2026-5441
Severity
HIGH
CVSS
7.1
EPSS
0.14%

Original NVD Description

An out-of-bounds read vulnerability exists in the `DecodePsmctRle1` function of `DicomImageDecoder.cpp`. The `PMSCT_RLE1` decompression routine, which decodes the proprietary Philips Compression format, does not properly validate escape markers placed near the end of the compressed data stream. A crafted sequence at the end of the buffer can cause the decoder to read beyond the allocated memory region and leak heap data into the rendered image output.

Related CVEs

Other vulnerabilities affecting the same vendor(s)