Siemens Syngo Imaging System is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. When handling a high amount of traffic between information systems and pictures systems, an attacker my be able to execute arbitrary code or cause a denial of service. This may lead to serious medical risk for a patient using the system.
Classification
Location:
Location Unknown
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Solution:
Discontinued Product
Exploit:
Exploit Unknown
Disclosure:
Uncoordinated Disclosure
Solution
Syngo Imaging Systems with the serial numbers 1005, 1065, 1076, 1112, 1202, 1242, 1269, 1278, 1279, and 1282 have been recalled by Siemens. Contact the vendor for instructions on replacing the unit.