CVE-2023-30559: Wireless Card Firmware Improperly Signed
Published Jul 13, 2023
·Updated
The configuration from the PCU can be modified without authentication using physical connection to the PCU.
Other sources
The firmware update package for the wireless card is not properly signed and can be modified.
— MITRE
Affected Software
4 affected components
BD Alaris 8015 Pcu Firmware<=12.1.3
BD Alaris 8015 Pcu
All of the following
BD Alaris 8015 Pcu Firmware<=12.1.3
BD Alaris 8015 Pcu
Event History
Jul 13, 2023
CVE Published
via MITRE·05:50 PM
Data Sourced
via MITRE·05:50 PM
DescriptionSeverityWeakness
Data Sourced
06:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this security issue?
The vulnerability ID of this security issue is CVE-2023-30559.
2
What is the severity level of CVE-2023-30559?
The severity level of CVE-2023-30559 is medium (5.7).
3
How can the configuration from the PCU be modified without authentication?
The configuration from the PCU can be modified without authentication using physical connection to the PCU.
4
What is the affected software?
The affected software is Bd Alaris 8015 Pcu Firmware version up to and including 12.1.3.
5
How can I fix CVE-2023-30559?
To fix CVE-2023-30559, it is recommended to update the Bd Alaris 8015 Pcu Firmware to a version that is not vulnerable.