First published: Tue Aug 16 2022(Updated: )
CENTUM VP / CS 3000 controller FCS (CP31, CP33, CP345, CP401, and CP451) contains an issue in processing communication packets, which may lead to resource consumption. If this vulnerability is exploited, an attacker may cause a denial of service (DoS) condition in ADL communication by sending a specially crafted packet to the affected product.
Credit: vultures@jpcert.or.jp vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Yokogawa Centum Cs 3000 Cp401 Firmware | ||
Yokogawa Centum Cs 3000 Cp401 | ||
Yokogawa Centum Cs 3000 Cp451 Firmware | ||
Yokogawa Centum Cs 3000 Cp451 | ||
Yokogawa Centum Cs 3000 Cp33 Firmware | ||
Yokogawa Centum Cs 3000 Cp33 | ||
Yokogawa Centum Cs 3000 Cp345 Firmware | ||
Yokogawa Centum Cs 3000 Cp345 | ||
Yokogawa Centum Cs 3000 Cp31 Firmware | ||
Yokogawa Centum Cs 3000 Cp31 | ||
Yokogawa Centum Vp 3000 Cp401 Firmware | >=r4.01.00<=r4.03.00 | |
Yokogawa Centum Vp 3000 Cp401 Firmware | >=r5.01.00<r5.04.78 | |
Yokogawa Centum Vp 3000 Cp401 Firmware | >=r6.01.00<r6.03.10 | |
Yokogawa Centum Vp 3000 Cp401 | ||
Yokogawa Centum Vp 3000 Cp451 Firmware | >=r4.01.00<=r4.03.00 | |
Yokogawa Centum Vp 3000 Cp451 Firmware | >=r5.01.00<r5.04.78 | |
Yokogawa Centum Vp 3000 Cp451 Firmware | >=r6.01.00<r6.03.10 | |
Yokogawa Centum Vp 3000 Cp451 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue in CENTUM VP / CS 3000 controller FCS is CVE-2022-33939.
The severity level of CVE-2022-33939 is high (7.5).
The affected software for CVE-2022-33939 includes Yokogawa Centum CS 3000 CP401 Firmware and Yokogawa Centum VP 3000 CP401 Firmware.
CVE-2022-33939 may lead to resource consumption and cause a denial of service (DoS) condition in ADL communication.
You can find more information about CVE-2022-33939 at the following references: [1] [2] [3].