[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5473-1 orthanc -- orthanc

ID: oval:org.secpod.oval:def:95187Date: (C)2023-12-01   (M)2023-12-01
Class: PATCHFamily: unix




It was discovered that authenticated API users of Orthanc, a DICOM server for medical imaging, could overwrite arbitrary files and in some setups execute arbitrary code. This update backports the option RestApiWriteToFileSystemEnabled, setting it to "true" in /etc/orthanc/orthanc.json restores the previous behaviour.

Platform:
Linux Mint 6
Linux Mint 5
Product:
liborthancframework1
orthanc
liborthancframework-dev
Reference:
DSA-5473-1
CVE-2023-33466
CVE    1
CVE-2023-33466
CPE    1
cpe:/o:linux_mint:linux_mint:5

© SecPod Technologies