CVE-2010-3044: Buffer Overflow
Multiple buffer overflows in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players T27LB before SP21 EP3 and T27LC before SP22 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted (1) .wrf or (2) .arf file, related to atas32.dll, a different vulnerability than CVE-2010-3041, CVE-2010-3042, and CVE-2010-3043.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3044?
CVE-2010-3044 has a moderate severity level as it can lead to denial of service and potentially allow remote code execution.
How do I fix CVE-2010-3044?
To fix CVE-2010-3044, users should upgrade to Cisco WebEx Recording Format Player version 27.11.0.3328 or later.
What types of attacks can CVE-2010-3044 facilitate?
CVE-2010-3044 can facilitate denial of service attacks and arbitrary code execution through specially crafted WRF or ARF files.
What applications are affected by CVE-2010-3044?
CVE-2010-3044 affects multiple versions of Cisco WebEx Recording Format Player, specifically versions prior to SP21 EP3 and SP22.
Is CVE-2010-3044 exploitable remotely?
Yes, CVE-2010-3044 is exploitable remotely through crafted .wrf or .arf files sent to the vulnerable player.