PT-2018-5444 · Abbott Laboratories · Abbott Laboratories Pacemakers
Published
2018-04-25
·
Updated
2019-10-09
·
CVE-2017-12714
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Abbott Laboratories pacemakers (affected versions not specified), however, it is mentioned that the affected devices are those manufactured prior to Aug 28, 2017.
Description:
The issue concerns pacemakers that do not restrict or limit the number of correctly formatted "RF wake-up" commands that can be received. This may allow a nearby attacker to repeatedly send commands, potentially reducing pacemaker battery life.
Recommendations:
For pacemakers manufactured prior to Aug 28, 2017, apply the firmware update developed by Abbott to help mitigate the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Abbott Laboratories Pacemakers