First published: Wed Aug 22 2018(Updated: )
In Philips PageWriter TC10, TC20, TC30, TC50, TC70 Cardiographs, all versions prior to May 2018, the PageWriter device does not sanitize data entered by user. This can lead to buffer overflow or format string vulnerabilities.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips PageWriter TC70 Firmware | ||
Philips PageWriter TC70 Firmware | ||
Philips Pagewriter Tc50 Firmware | ||
Philips Pagewriter Tc50 Firmware | ||
Philips Pagewriter TC30 Firmware | ||
Philips Pagewriter Tc30 Firmware | ||
Philips PageWriter TC20 | ||
Philips Pagewriter TC20 Firmware | ||
Philips PageWriter TC10 Firmware | ||
Philips Pagewriter Tc10 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-14799 is considered a high-severity vulnerability due to its potential for buffer overflow and format string exploits.
To fix CVE-2018-14799, ensure that you update your Philips PageWriter devices to the latest firmware version released after May 2018.
CVE-2018-14799 impacts Philips PageWriter TC10, TC20, TC30, TC50, and TC70 models prior to their firmware updates in May 2018.
CVE-2018-14799 may lead to buffer overflow and format string vulnerabilities due to improper data sanitization.
Yes, Philips PageWriter TC70 devices with firmware versions prior to May 2018 are vulnerable to CVE-2018-14799.