Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote attackers to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.
2014-05-08T10:55:03.700
2025-04-12T10:46:40.837
Deferred
CVSSv2: 7.8 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | webex_advanced_recording_format_player | t27ld | Yes |
Application | cisco | webex_advanced_recording_format_player | t28 | Yes |
Application | cisco | webex_advanced_recording_format_player | t29 | Yes |
Application | cisco | webex_recording_format_player | t27ld | Yes |
Application | cisco | webex_recording_format_player | t28 | Yes |
Application | cisco | webex_recording_format_player | t29 | Yes |