LIVE·

Global News & Market Intelligence · Verified Official Dispatches

Editions:
LIVEMARKETS:
S&P 500 5,640.20 (+0.45% )|NASDAQ 17,855.10 (+0.62% )|BRENT CRUDE $82.40 (-0.85% )|BITCOIN $64,250.00 (+1.90% )
S&P 500 5,640.20 (+0.45% )|NASDAQ 17,855.10 (+0.62% )|BRENT CRUDE $82.40 (-0.85% )|BITCOIN $64,250.00 (+1.90% )
Breaking
Cybersecurity· 🌍 Global

Medixant RadiAnt DICOM Vulnerability Identified: Update Now to 2026.1

According to CISA Advisories, a critical heap out-of-bounds write vulnerability in RadiAnt DICOM version 2025.2 and earlier allows potential remote code execution.

By Technology & AI Intelligence Desk·Published ·⏱️ 2 min read (368 words)
⚡ AI-Synthesized Briefing · Verified Editorial

Key Story Metrics & Context

Industry Sector:Healthcare and Public Health
Companies Impacted:Medixant
Geographic Scale:Poland 🇵🇱, Global 🌍
Reporting Status:✓ Multi-Source Verified
Medixant RadiAnt DICOM Vulnerability Identified: Update Now to 2026.1

Executive Brief & Verified Analysis

✓ OFFICIAL SOURCES REVIEWED

Executive Summary

According to CISA Advisories, a critical heap out-of-bounds write vulnerability in RadiAnt DICOM version 2025.2 and earlier allows potential remote code execution.

Why This Matters

Key strategic implication: RadiAnt DICOM versions <=2025.2 contain an out-of-bounds write vulnerability (CVE-2026-17264).

Market Impact

Verified for Medixant. Primary market adjustment vector.

Source Verification

Cross-referenced across regulatory dispatches, official press releases, and verified wire filings.

Operational context for Medixant RadiAnt DICOM Vulnerability Identified: Update Now to 2026.1
📸 Figure 1.2 · Operational Context
Figure 1.2: Secondary sector visual for Cybersecurity briefing on Medixant RadiAnt DICOM Vulnerability Identified: Update Now to 2026.1.Skyline Intelligence

Strategic Implications

  • RadiAnt DICOM versions <=2025.2 contain an out-of-bounds write vulnerability (CVE-2026-17264).
  • The vulnerability allows for potential remote code execution via a maliciously crafted DICOM file.
  • Medixant has released version 2026.1 as the required patch for this security flaw.
  • The issue carries a CVSS 3.1 base score of 4.3 and a CVSS 4.0 base score of 5.3.

A significant security vulnerability has been identified within the Medixant RadiAnt DICOM software, prompting an urgent advisory for healthcare organizations globally. According to CISA Advisories, versions of the application up to and including 2025.2 are affected by a heap out-of-bounds write defect, identified as CVE-2026-17264, which stems from how the software processes maliciously crafted JPEG-compressed pixel data within DICOM files.

Successful exploitation of this vulnerability could lead to an application crash or, more critically, allow an attacker to remotely execute arbitrary code on the host system. The vulnerability is categorized under CWE-787: Out-of-bounds Write. The risk profile is underscored by a CVSS 3.1 base score of 4.3 and a CVSS 4.0 base score of 5.3, both of which are classified as medium severity. The vulnerability was reported to authorities by security researchers banda, oriotie, ax123, jihyeon4725, lacroix, and minzu.

Technical Vulnerability Metrics

MetricValue
CVE IDCVE-2026-17264
CVSS 3.1 Base Score4.3
CVSS 4.0 Base Score5.3
Impacted Versions<=2025.2
Required RemediationUpgrade to 2026.1

Medixant has provided a patch via version 2026.1 to address the flaw. To mitigate potential exploitation, users are advised to update their software immediately. Furthermore, administrators should strictly limit the opening of DICOM files to those originating from trusted sources. While the application architecture incorporates defensive mechanisms such as Control Flow Guard (CFG), Data Execution Prevention (DEP), and Address Space Layout Randomization (ASLR)—which serve to impede successful exploitation—security experts emphasize that these layers do not replace the need for an official software update.

Why It Matters

Medical imaging infrastructure is a frequent target for malicious actors due to the sensitive nature of patient data and the potential for operational disruption. This vulnerability highlights the persistent risk that proprietary medical software presents to hospital networks. Because healthcare providers often operate legacy systems that are slow to patch, a flaw in a widely used viewer like RadiAnt can create a massive attack surface. Organizations must view this update not as an optional maintenance task, but as a core component of maintaining the clinical integrity and cybersecurity hygiene of their diagnostic environments.

Expected Next Steps

  • 1Deploy version 2026.1 to all clinical workstations.
  • 2Review internal policies for handling DICOM files from external or untrusted sources.
  • 3Isolate diagnostic imaging networks from general business internet access.

Frequently Asked Questions

All versions up to and including 2025.2 are affected.

Users are advised to update their software to version 2026.1 immediately.

Yes, the application includes Control Flow Guard (CFG), Data Execution Prevention (DEP), and Address Space Layout Randomization (ASLR), though updating remains the primary remediation.

Source Transparency & Verified Dispatches

✓ Verified Primary Data
CISA Advisories💼 Corporate Dispatch
Source ↗
Medixant💼 Corporate Dispatch
Source ↗

Reader Discussion & Insights

Leave a Comment

Loading discussion thread...

Get Breaking Global Intel in Your Inbox

Subscribe to the Skyline Wire AI Daily Briefing. Direct insights across Aviation, Tech, EVs, and Markets.

Original announcement link: CISA Advisories

cybersecuritymedixantradiantcisahealthcare-it
medixant radiant dicom vulnerabilitycve-2026-17264dicom file securityhealthcare cybersecurityout-of-bounds writeradiant dicom updatemedical software security