High severity8.1NVD Advisory· Published Feb 15, 2018· Updated Jun 17, 2026
CVE-2017-12718
CVE-2017-12718
Description
A Classic Buffer Overflow issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version 1.1, 1.5, and 1.6. A third-party component used in the pump does not verify input buffer size prior to copying, leading to a buffer overflow, allowing remote code execution on the target device. The pump receives the potentially malicious input infrequently and under certain conditions, increasing the difficulty of exploitation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 1.1, 1.5, and 1.6
Patches
Vulnerability mechanics
References
4- www.securityfocus.com/bid/100665nvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/101252nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSMA-17-250-02AnvdThird Party AdvisoryUS Government Resource
- www.exploit-db.com/exploits/43776/nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.