9.3
CVSSv2

CVE-2014-2133

Published: 08/05/2014 Updated: 08/05/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Cisco Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .arf file that triggers improper LZW decompression, aka Bug ID CSCuj87565.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex recording format player t29

cisco webex advanced recording format player t29

cisco webex advanced recording format player t27ld

cisco webex advanced recording format player t28

cisco webex recording format player t27ld

cisco webex recording format player t28

Vendor Advisories

Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players Exploitation of these vulnerabilities could allow a remote attacker to cause an affected player to crash and, in some cases, could allow a remote attacker to execute arbitrary code on the system of a targeted user ...