CVE-2014-2132
Published May 8, 2014
Last updated 11 years ago
Overview
- Description
- Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote attackers to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t27ld:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E28EF0C1-7BCE-4C50-A3D9-483BC5C30CA2" }, { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEBD5AC9-1395-4D2B-ABDE-0C6FBD3635C4" }, { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "754DFFF3-78AB-4B3A-BDAE-5994D2CDFA82" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t27ld:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC0E0061-F1F8-4B1B-8495-A519DF16A60C" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98E3845B-EE9A-4D0C-8160-F86AE8FE1B1A" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C2A45E8-B582-4249-AD81-77D9E02D146A" } ], "operator": "OR" } ] } ]