SB2018051806 - Denial of service in GE PACSystems CPE305, 310, 330, 400, RSTi-EP CPE 100, CPU320/CRU320, RXi
Published: May 18, 2018 Updated: January 15, 2020
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper input validation (CVE-ID: CVE-2018-8867)
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to an error when processing malicious input. A remote attacker can send specially crafted packets and cause the device to become unavailable.
Remediation
Install update from vendor's website.