CVE-2024-14036 - CVE House
Back to Database
Status published High CVE-2024-14036

Dräger Core 1.0.5 Denial of Service via Malformed SDC Message

Vulnerability Description

Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigger high CPU load by sending specially crafted, unencrypted SDC messages during the discovery process. Attackers with access to the hospital network can send malformed SDC packets to exhaust CPU resources in the affected process, causing further SDC messages to no longer be processed.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-14036

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Core, M540 Converter Service
Vulnerable Versions:
0

Timeline

Official Publish: June 2nd, 2026
Last Modified: June 3rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)