CVE-2014-2136
Published May 8, 2014
Last updated 11 years ago
Overview
- Description
- Buffer overflow in Cisco Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .arf file, aka Bug IDs CSCui72223, CSCul01163, and CSCul01166.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t27ld:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E28EF0C1-7BCE-4C50-A3D9-483BC5C30CA2" }, { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEBD5AC9-1395-4D2B-ABDE-0C6FBD3635C4" }, { "criteria": "cpe:2.3:a:cisco:webex_advanced_recording_format_player:t29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "754DFFF3-78AB-4B3A-BDAE-5994D2CDFA82" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t27ld:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC0E0061-F1F8-4B1B-8495-A519DF16A60C" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98E3845B-EE9A-4D0C-8160-F86AE8FE1B1A" }, { "criteria": "cpe:2.3:a:cisco:webex_recording_format_player:t29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C2A45E8-B582-4249-AD81-77D9E02D146A" } ], "operator": "OR" } ] } ]