CVE-2014-5435: Critical severity honeywell experion process knowledge system vulnerability
An arbitrary memory write vulnerability exists in the dualonsrv.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, that could lead to possible remote code execution or denial of service. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5435?
CVE-2014-5435 is classified as a high-severity vulnerability due to the potential for remote code execution or denial of service.
How do I fix CVE-2014-5435?
To remediate CVE-2014-5435, upgrade the Honeywell Experion Process Knowledge System to versions R400.6 or later, R410.6 or later, or R430.2 or later.
What systems are affected by CVE-2014-5435?
CVE-2014-5435 affects Honeywell Experion PKS R40x prior to R400.6, R41x prior to R410.6, and R43x prior to R430.2.
Can CVE-2014-5435 lead to data breaches?
Yes, CVE-2014-5435 could potentially lead to data breaches if an attacker exploits the arbitrary memory write vulnerability.
Is there a patch available for CVE-2014-5435?
Yes, a patch is available through Honeywell for CVE-2014-5435 in the form of updated software versions.