CVE-2009-2880: Buffer Overflow
Buffer overflow in atrpui.dll in the Cisco WebEx WRF Player 26.x before 26.49.32 for Windows, 27.x before 27.10.x for Windows, 26.x before 26.49.35 for Mac OS X and Linux, and 27.x before 27.11.8 for Mac OS X and Linux allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WebEx Recording Format (WRF) file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2880?
CVE-2009-2880 has a high severity rating due to its potential for causing denial of service and application crashes.
How do I fix CVE-2009-2880?
To fix CVE-2009-2880, update Cisco WebEx to the latest version available that addresses this vulnerability.
Which versions of Cisco WebEx are affected by CVE-2009-2880?
CVE-2009-2880 affects Cisco WebEx Player versions 26.x before 26.49.35 and 27.x before 27.11.8 for Windows, Mac OS X, and Linux.
Can CVE-2009-2880 be exploited remotely?
Yes, CVE-2009-2880 can be exploited remotely by attackers to crash the application.
What systems are vulnerable to CVE-2009-2880?
CVE-2009-2880 mainly impacts Windows, Mac OS X, and Linux systems running affected versions of Cisco WebEx.