PRODUCT SECURITY BULLETIN: TRECK TCP/IP "RIPPLE 20"

Publication Date: 07/09/2020
Last Updated: 07/09/2020

Abbott is proactively monitoring developments related to the recently identified vulnerabilities in the Treck TCP/IP stack, commonly referred to as"Ripple 20". According to published reports, including the CISA Alert1, the security vulnerabilities in the software that supports network connectivity could allow remote code execution or exposure of sensitive information.

Abbott products are not impacted by this advisory. Abbott’s product security and quality teams will continue to monitor this situation and assess these vulnerabilities for potential impact as updates are made. We will update this advisory if new information warrants additional communication.

Additional Information

Customers interested in additional information regarding patches, procedures or configuration changes on any Abbott products should contact their Abbott assigned account or customer support representative.

Abbott is committed to ensuring the safety and security our products. For more information on Abbott's product cybersecurity program, click here.

 

References
1. Cybersecurity and Infrastructure Security Agency (CISA), ICS Alert (ICS-ALERT-20-168-01) Treck TCP/IP Stack. Accessed June 16, 2020, https://www.us-cert.gov/ics/advisories/icsa-20-168-01