CVE-2014-2132: Buffer Overflow
Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote attackers to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2132?
CVE-2014-2132 has been classified with a medium severity rating due to its potential to cause a denial of service.
How do I fix CVE-2014-2132?
To remediate CVE-2014-2132, update the Cisco WebEx Recording Format player to the latest version available.
Who is affected by CVE-2014-2132?
CVE-2014-2132 affects users of Cisco WebEx Recording Format players including versions T27 LD, T28, and T29 prior to their respective patch releases.
What types of attacks are possible with CVE-2014-2132?
CVE-2014-2132 allows remote attackers to exploit the vulnerability through crafted .wrf or .arf files, leading to application crashes.
When was CVE-2014-2132 disclosed?
CVE-2014-2132 was publicly disclosed in May 2014.