{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/vendors/medixant/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["RadiAnt DICOM"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"threat","_cs_vendors":["Medixant"],"content_html":"\u003cp\u003eMedixant RadiAnt DICOM is a medical imaging software widely used within the Healthcare and Public Health sector for viewing DICOM files. A vulnerability, identified as CVE-2026-17264, exists in versions 2025.2 and earlier of the application. The flaw is caused by improper handling of JPEG-compressed pixel data within a DICOM file, leading to a heap out-of-bounds write (CWE-787). An attacker can leverage this by delivering a specially crafted file to a user. While the software employs modern exploit mitigations like Control Flow Guard (CFG), Data Execution Prevention (DEP), and Address Space Layout Randomization (ASLR), successful exploitation remains a risk, potentially resulting in application crashes or remote code execution. This vulnerability is significant for clinical environments where the integrity and availability of diagnostic imaging software are paramount.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability affects the Healthcare and Public Health sector globally. If successfully exploited, an attacker could force the application to crash, disrupting medical diagnostic workflows, or potentially gain arbitrary code execution on the workstation where the DICOM file is opened. There are no reports of active exploitation in the wild as of August 2026.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate Medixant RadiAnt DICOM to version 2026.1 immediately to patch CVE-2026-17264.\u003c/li\u003e\n\u003cli\u003eEnforce a policy to open DICOM files only from trusted and verified sources to reduce the risk of handling malicious content.\u003c/li\u003e\n\u003cli\u003eMinimize network exposure for workstations running medical imaging software by isolating them from general business networks and the internet.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-06T17:31:19Z","date_published":"2026-08-06T17:31:19Z","id":"https://feed.craftedsignal.io/briefs/2026-08-radiant-dicom-vuln/","summary":"Medixant RadiAnt DICOM versions 2025.2 and earlier are vulnerable to a heap out-of-bounds write flaw that may lead to arbitrary code execution when processing maliciously crafted DICOM files.","title":"Medixant RadiAnt DICOM Out-of-Bounds Write Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-08-radiant-dicom-vuln/"}],"language":"en","title":"CraftedSignal Threat Feed - Medixant","version":"https://jsonfeed.org/version/1.1"}