CVE-2026-12805
authorDebian Med Packaging Team <debian-med-packaging@lists.alioth.debian.org>
Mon, 22 Jun 2026 20:22:11 +0000 (22:22 +0200)
committerÉtienne Mollier <emollier@debian.org>
Mon, 22 Jun 2026 20:22:11 +0000 (22:22 +0200)
commita8ba57ea4999ab6b50e97d8f5cad9c8d90b72f79
treea5324a79a082277464bb6dcc91117b8428efb294
parente83d5ed1923e3002121d98d638e6010872f8c1a6
CVE-2026-12805

commit 1d4b3815c0987840a983160bfc671fef63a3105b
Author: Marco Eichelberg <eichelberg@offis.de>
Date:   Sat May 23 17:07:58 2026 +0200

    Fixed buffer overflow in XMLNode::parseFile().

    Fixed a heap buffer overflow that could occur in the XML parser
    when reading from a named pipe.

    Thanks to Cristhian Daniel Rivas Zúñiga and Sebastian Andres Muñoz Morera
    (Insituto Tecnológico de Costa Rica) for the bug report and fix.

    This closes DCMTK issue #1208.

Gbp-Pq: Name CVE-2026-12805.patch
ofstd/libsrc/ofxml.cc