PT-2018-5444 · Abbott Laboratories · Abbott Laboratories Pacemakers

Published

2018-04-25

·

Updated

2019-10-09

·

CVE-2017-12714

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Abbott Laboratories pacemakers (affected versions not specified), however, it is mentioned that the affected devices are those manufactured prior to Aug 28, 2017.
Description: The issue concerns pacemakers that do not restrict or limit the number of correctly formatted "RF wake-up" commands that can be received. This may allow a nearby attacker to repeatedly send commands, potentially reducing pacemaker battery life.
Recommendations: For pacemakers manufactured prior to Aug 28, 2017, apply the firmware update developed by Abbott to help mitigate the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-12714

Affected Products

Abbott Laboratories Pacemakers