HIGH · 8.3

CVE-2014-3888

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earl...

Vulnerability Description

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier, when FCS/Test Function is enabled, allows remote attackers to execute arbitrary code via a crafted packet.

CVSS Score

8.3

HIGH

AV:N/AC:M/Au:N/C:P/I:P/A:C
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
COMPLETE

Affected Products

VendorProductVersions
YokogawaExaopc<= 3.72.00
YokogawaB\/M9000Cs Software<= 5.05.01
YokogawaB\/M9000Cs-
YokogawaCentum Vp Entry Class Software<= 5.03.00
YokogawaCentum Vp Entry Class-
YokogawaCentum Vp Software<= 5.03.20
YokogawaCentum Vp-
YokogawaB\/M9000 Vp Software<= 7.03.01
YokogawaB\/M9000 Vp-
YokogawaCentum Cs 3000r3.01
YokogawaCentum Cs 3000 Software<= 2.23.00
YokogawaCentum Cs 1000 Software-
YokogawaCentum Cs 1000-
YokogawaCentum Cs 3000 Entry Class Software<= 3.09.50
YokogawaCentum Cs 3000 Entry Class-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-3888?

CVE-2014-3888 is a vulnerability with a CVSS score of 8.3 (HIGH). Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earl...

How severe is CVE-2014-3888?

CVE-2014-3888 has been rated HIGH with a CVSS base score of 8.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-3888?

Check the references section above for vendor advisories and patch information. Affected products include: Yokogawa Exaopc, Yokogawa B\/M9000Cs Software, Yokogawa B\/M9000Cs, Yokogawa Centum Vp Entry Class Software, Yokogawa Centum Vp Entry Class.