Buffer overflow in Cisco Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .arf file that triggers improper LZW decompression, aka Bug ID CSCuj87565.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140507-webex | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-05-08 03:55
Updated : 2014-05-08 06:29
NVD link : CVE-2014-2133
Mitre link : CVE-2014-2133
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
cisco
- webex_recording_format_player
- webex_advanced_recording_format_player