CVE-2014-3888 - CVE House
Back to Database
Status published High CVE-2014-3888

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000,...

Vulnerability Description

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier, when FCS/Test Function is enabled, allows remote attackers to execute arbitrary code via a crafted packet.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-3888

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

exaopc, b\/m9000cs software, b\/m9000cs, centum vp entry class software, centum vp entry class, centum vp software, centum vp, b\/m9000 vp software, b\/m9000 vp, centum cs 3000 software, centum cs 3000, centum cs 1000 software, centum cs 1000, centum cs 3000 entry class software, centum cs 3000 entry class
Vulnerable Versions:
0, 3.71.02, 4.03.00

Timeline

Official Publish: July 10th, 2014
Last Modified: August 6th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.