Skip to main content

Roche Point-of-Care Handheld Medical Device Vulnerabilities

Roche have released details of several security affecting their Point-of-Care handheld medical devices. vulnerabilities affecting their Point-of-Care handheld medical devices.
Report a cyber attack: call 0300 303 5222 or email [email protected]

This content has been archived

This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk

Summary

Roche have released details of several security affecting their Point-of-Care handheld medical devices. vulnerabilities affecting their Point-of-Care handheld medical devices.

Threat details

A local authenticated attacker could exploit these vulnerabilities to gain access to sensitive information, execute arbitrary code, change configuration settings or cause a denial-of-service condition on an affected device.

For further information:


Remediation advice

Roche have confirmed updates to address these vulnerabilities will be released in November 2018. Users and administrators are encouraged to contact their local Roche Diagnostics office to obtain these updates as they become available.

Remediation steps

Type Step
  • Restrict network and physical access to the device and attached infrastructure by enabling the device security features.
  • Protect connected endpoints from unauthorised access, theft, and malicious software.


Last edited: 17 February 2020 12:53 pm