Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-12718
HistoryFeb 15, 2018 - 10:29 a.m.

Buffer overflow

2018-02-1510:29:00
PRIOn knowledge base
www.prio-n.com
2

8.3 High

AI Score

Confidence

High

0.327 Low

EPSS

Percentile

97.1%

A Classic Buffer Overflow issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version 1.1, 1.5, and 1.6. A third-party component used in the pump does not verify input buffer size prior to copying, leading to a buffer overflow, allowing remote code execution on the target device. The pump receives the potentially malicious input infrequently and under certain conditions, increasing the difficulty of exploitation.

8.3 High

AI Score

Confidence

High

0.327 Low

EPSS

Percentile

97.1%