CVE-2014-3931

fastping.c in MRLG (aka Multi-Router Looking Glass) before 5.5.0 allows remote attackers to cause an arbitrary memory write and memory corruption.

Basic Information

CVE State
PUBLISHED
Reserved Date
May 31, 2014
Published Date
March 31, 2017
Last Updated
July 30, 2025
Vendor
n/a
Product
Multi-Router Looking Glass
Description
fastping.c in MRLG (aka Multi-Router Looking Glass) before 5.5.0 allows remote attackers to cause an arbitrary memory write and memory corruption.
Tags
edge cisa

CVSS Scores

CVSS v3.0

9.8 - CRITICAL

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2.0

7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Score

Score
57.56% (Percentile: 98.04%) as of 2025-07-29

SSVC Information

Exploitation
active
Automatable
Yes
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (2025-07-07 17:45:49 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2025-07-07 17:45:39 UTC

Recent Mentions

CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active Exploitation

Source: TheHackerNews • Published: 2025-07-08 05:08:00 UTC

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of flaws is as follows - CVE-2014-3931 (CVSS score: 9.8) - A buffer overflow vulnerability in Multi-Router Looking Glass (MRLG) that could allow remote attackers to cause an

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel