First published: Fri Dec 18 2009(Updated: )
Buffer overflow in atas32.dll in the Cisco WebEx WRF Player 26.x before 26.49.32 for Windows, 27.x before 27.10.x for Windows, 26.x before 26.49.35 for Mac OS X and Linux, and 27.x before 27.11.8 for Mac OS X and Linux allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WebEx Recording Format (WRF) file.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Webex | =26.00 | |
Webex | =26.00 | |
Webex | =26.00 | |
Webex | =27.00 | |
Webex | =27.00 | |
Webex | =27.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2875 has been classified as a high severity vulnerability due to its potential to cause application crashes or arbitrary code execution.
To fix CVE-2009-2875, update Cisco WebEx WRF Player to version 26.49.32 or later for Windows, and 27.10.x or later for all other platforms.
CVE-2009-2875 affects Cisco WebEx versions 26.x before 26.49.32 and 27.x before 27.10.x for Windows, Mac OS X, and Linux.
CVE-2009-2875 allows remote attackers to perform a denial of service by crashing the application or potentially executing arbitrary code.
The impact of CVE-2009-2875 includes application crashes which can disrupt user activities when utilizing Cisco WebEx services.