-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-22c8d5a1c7 2025-03-15 00:23:42.170651+00:00 -------------------------------------------------------------------------------- Name : dcmtk Product : Fedora 42 Version : 3.6.9 Release : 2.fc42 URL : http://dicom.offis.de/dcmtk.php.en Summary : Offis DICOM Toolkit (DCMTK) Description : DCMTK is a collection of libraries and applications implementing large parts the DICOM standard. It includes software for examining, constructing and converting DICOM image files, handling offline media, sending and receiving images over a network connection, as well as demonstrative image storage and worklist servers. DCMTK is is written in a mixture of ANSI C and C++. It comes in complete source code and is made available as "open source" software. This package includes multiple fixes taken from the "patched DCMTK" project. Install DCMTK if you are working with DICOM format medical image files. -------------------------------------------------------------------------------- Update Information: Update for dcmtk 3.6.9 Includes security fix for CVE-2024-27628, CVE-2024-28130 -------------------------------------------------------------------------------- ChangeLog: * Thu Feb 20 2025 Ankur Sinha <ankursinha AT fedoraproject DOT org> - 3.6.9-2 - Update license to SPDX identifiers * Mon Feb 10 2025 Ankur Sinha <ankursinha AT fedoraproject DOT org> - 3.6.9-1 - Update to 3.6.9 (rh#2297944) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2293952 - CVE-2024-28130 dcmtk: incorrect type conversion https://bugzilla.redhat.com/show_bug.cgi?id=2293952 [ 2 ] Bug #2294757 - CVE-2024-27628 dcmtk: Buffer Overflow via the EctEnhancedCT method https://bugzilla.redhat.com/show_bug.cgi?id=2294757 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-22c8d5a1c7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- package-announce@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to package-announce-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-announce@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue