CVE-2012-3941: Buffer Overflow
Published Oct 25, 2012
·Updated
Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72850.
Affected Software
5 affected components
Cisco Webex Recording Format Player=27.11.26
Cisco Webex Recording Format Player=27.21.10
Cisco Webex Recording Format Player=27.25.10
Cisco Webex Recording Format Player=27.32.1
Cisco Webex Recording Format Player=28.0.0
Remediation
Event History
Oct 25, 2012
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-3941?
CVE-2012-3941 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2012-3941?
To fix CVE-2012-3941, update the Cisco WebEx Recording Format Player to the latest version which addresses this vulnerability.
3
What versions of Cisco WebEx Recording Format Player are affected by CVE-2012-3941?
CVE-2012-3941 affects versions T27 before LD SP32 EP10 and T28 before T28.4 of Cisco WebEx Recording Format Player.
4
Can CVE-2012-3941 be exploited remotely?
Yes, CVE-2012-3941 can be exploited remotely by attackers using a crafted WRF file.
5
What type of vulnerability is CVE-2012-3941?
CVE-2012-3941 is a heap-based buffer overflow vulnerability.