CVE-2014-3888: Yokogawa b/m9000 Vp

High severity, CVSS 8.3. EPSS: 62.3% chance of exploitation in the next 30 days.

Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier, when FCS/Test Function is enabled, allows remote attackers to execute arbitrary code via a crafted packet.

Affected products

  • Yokogawa b/m9000 Vp
  • Yokogawa b/m9000 Vp Software: up to and including 7.03.01
  • Yokogawa b/m9000cs
  • Yokogawa b/m9000cs Software: up to and including 5.05.01
  • Yokogawa Centum Cs 1000
  • Yokogawa Centum Cs 1000 Software: affected versions not specified
  • Yokogawa Centum Cs 3000
  • Yokogawa Centum Cs 3000 Entry Class
  • Yokogawa Centum Cs 3000 Entry Class Software: up to and including 3.09.50
  • Yokogawa Centum Cs 3000 Software: up to and including 2.23.00
  • Yokogawa Centum Vp
  • Yokogawa Centum Vp Entry Class
  • Yokogawa Centum Vp Entry Class Software: up to and including 5.03.00
  • Yokogawa Centum Vp Software: up to and including 5.03.20; version 4.03.00 only
  • Yokogawa Exaopc: up to and including 3.72.00; version 3.71.02 only

Published 2014-07-10. Last modified 2026-06-17.