9.3
CVSSv2

CVE-2014-2134

Published: 08/05/2014 Updated: 08/05/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in Cisco WebEx Recording Format (WRF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted audio channel in a .wrf file, aka Bug ID CSCuc39458.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex advanced recording format player t29

cisco webex recording format player t27ld

cisco webex advanced recording format player t27ld

cisco webex advanced recording format player t28

cisco webex recording format player t28

cisco webex recording format player t29

Vendor Advisories

Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players Exploitation of these vulnerabilities could allow a remote attacker to cause an affected player to crash and, in some cases, could allow a remote attacker to execute arbitrary code on the system of a targeted user ...