Medtronic CareLink Encore Programmers CVE-2018-18984 Weak Encryption Security Weakness
BID:106215
CVE-2018-18984 |Info
Medtronic CareLink Encore Programmers CVE-2018-18984 Weak Encryption Security Weakness
| Bugtraq ID: | 106215 |
| Class: | Design Error |
| CVE: |
CVE-2018-18984 |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 13 2018 12:00AM |
| Updated: | Dec 13 2018 12:00AM |
| Credit: | Billy Rios and Jonathan Butts from Whitescope LLC |
| Vulnerable: |
Medtronic CareLink 9790 Programmer 0 Medtronic CareLink 2090 Programmer 0 Medtronic 29901 Encore Programmer 0 |
| Not Vulnerable: | |
Exploit / POC
Medtronic CareLink Encore Programmers CVE-2018-18984 Weak Encryption Security Weakness
An attacker can use readily available utilities to exploit this issue.
An attacker can use readily available utilities to exploit this issue.
Solution / Fix
Medtronic CareLink Encore Programmers CVE-2018-18984 Weak Encryption Security Weakness
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Medtronic CareLink Encore Programmers CVE-2018-18984 Weak Encryption Security Weakness
References:
References:
- Medtronic Home Page (Medtronic)
- Medical Advisory (ICSMA-18-347-01) (ICS-CERT)