First published: Fri Jun 29 2012(Updated: )
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11, T27 LD before SP32 CP2, and T28 L10N before SP1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted WRF file, aka Bug ID CSCtz72946.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco WebEx Advanced Recording Format Player | >=27.11.0<=27.11.26 | |
Cisco WebEx Advanced Recording Format Player | >=27.21.0<=27.21.10 | |
Cisco WebEx Advanced Recording Format Player | >=27.25.0<27.25.11 | |
Cisco WebEx Advanced Recording Format Player | >=27.32.0<27.32.2 | |
Cisco WebEx Advanced Recording Format Player | >=28.0.0<28.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-3056 has a critical severity rating due to its ability to allow remote code execution or denial of service.
To fix CVE-2012-3056, update the Cisco WebEx Recording Format Player to the latest version that mitigates the vulnerability.
CVE-2012-3056 affects multiple versions including T27 L through SP11 EP26 and T28 L10N before SP1.
Yes, CVE-2012-3056 can lead to memory corruption which may result in data loss during exploitation.
The consequences of CVE-2012-3056 include unauthorized code execution, which can result in system compromise and denial of service.