A Classic Buffer Overflow issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version 1.1, 1.5, and 1.6. A third-party component used in the pump does not verify input buffer size prior to copying, leading to a buffer overflow, allowing remote code execution on the target device. The pump receives the potentially malicious input infrequently and under certain conditions, increasing the difficulty of exploitation.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-05T18:43:56.539Z
Reserved: 2017-08-09T00:00:00
Link: CVE-2017-12718
No data.
Status : Modified
Published: 2018-02-15T10:29:00.227
Modified: 2024-11-21T03:10:05.357
Link: CVE-2017-12718
No data.
OpenCVE Enrichment
No data.