CVE-2026-44036 | OFFIS DCMTK 3.7.0 XML-to-DICOM converter xml2dcm.cc parseSequence recursion
A vulnerability classified as problematic was found in OFFIS DCMTK 3.7.0. This vulnerability affects the function DcmXMLParseHelper::parseDataSet/DcmXMLParseHelper::parseSequence of the file dcmdata/libdcxml/xml2dcm.cc of the component XML-to-DICOM converter. Such manipulation leads to uncontrolled recursion.
This vulnerability is uniquely identified as CVE-2026-44036. The attack can be launched remotely. No exploit exists.
Applying a patch is advised to resolve this issue.VulDB Recent EntriesRead More