Dräger Atlan A350 software versions 1.00 through 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medibus-compliant data through the Medibus interface. Attackers can transmit malformed data to overload the internal processor, gradually disrupting device operation over several hours and causing loss of data transmission, delayed display of real-time curves, and deviation between displayed airway pressure values and screen curves.
Metrics
Affected Vendors & Products
References
History
Wed, 03 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 03 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Draeger
Draeger atlan A350 |
|
| Vendors & Products |
Draeger
Draeger atlan A350 |
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dräger Atlan A350 software versions 1.00 through 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medibus-compliant data through the Medibus interface. Attackers can transmit malformed data to overload the internal processor, gradually disrupting device operation over several hours and causing loss of data transmission, delayed display of real-time curves, and deviation between displayed airway pressure values and screen curves. | |
| Title | Dräger Atlan A350 1.00-1.01 DoS via Medibus Interface | |
| Weaknesses | CWE-1286 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-06-02T19:27:00.318Z
Updated: 2026-06-03T18:41:29.600Z
Reserved: 2026-06-02T19:20:57.660Z
Link: CVE-2021-4479
Updated: 2026-06-03T12:50:34.005Z
Status : Received
Published: 2026-06-02T20:16:28.383
Modified: 2026-06-02T20:16:28.383
Link: CVE-2021-4479
No data.