← Back

CVE-2014-3888

nvd nist
Published: Jul 10, 2014Modified: May 6, 2026

JSON object

Loading...
8.3
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:C
Exploitability: 8.6 / Impact: 8.5
Source: NVD

Description

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier, when FCS/Test Function is enabled, allows remote attackers to execute arbitrary code via a crafted packet.

Affected (17)

15 products
Exaopc
B/m9000cs Software
B/m9000cs
Centum Vp Entry Class Software
Centum Vp Entry Class
Centum Vp Software
Centum Vp
B/m9000 Vp Software
B/m9000 Vp
Centum Cs 3000 Software
Centum Cs 3000
Centum Cs 1000 Software
Centum Cs 1000
Centum Cs 3000 Entry Class
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Yokogawa
Up to 3.72.00
Version 3.71.02
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 5.05.01
All versions
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 5.03.00
All versions
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Yokogawa
Up to 5.03.20
Version 4.03.00
All versions
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 7.03.01
All versions
Configuration F
2 vulnerable · 12 platform
Vulnerable SoftwareAffected Versions
Up to 2.23.00
All versions
Running on/withPlatform Versions
Yokogawa
Centum Cs 3000
Version r3.01
Yokogawa
Centum Cs 3000
Version r3.02
Yokogawa
Centum Cs 3000
Version r3.03
Yokogawa
Centum Cs 3000
Version r3.04
Yokogawa
Centum Cs 3000
Version r3.05
Yokogawa
Centum Cs 3000
Version r3.06
Yokogawa
Centum Cs 3000
Version r3.07
Yokogawa
Centum Cs 3000
Version r3.08.50
Yokogawa
Centum Cs 3000
Version r3.08.70
Yokogawa
Centum Cs 3000
Version r3.08
Yokogawa
Centum Cs 3000
Version r3.09.50
Yokogawa
Centum Cs 3000
Version r3.09
Configuration G
2 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
Configuration H
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.09.50
All versions

References (10)

Source: vultures@jpcert.or.jp
Third Party AdvisoryUS Government Resource
Source: vultures@jpcert.or.jp
Source: vultures@jpcert.or.jp
Source: vultures@jpcert.or.jp
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.