7.8
CVE-2014-2132
- EPSS 0.66%
- Veröffentlicht 08.05.2014 10:55:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote attackers to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Webex Advanced Recording Format Player Versiont27ld
Cisco ≫ Webex Advanced Recording Format Player Versiont28
Cisco ≫ Webex Advanced Recording Format Player Versiont29
Cisco ≫ Webex Recording Format Player Versiont27ld
Cisco ≫ Webex Recording Format Player Versiont28
Cisco ≫ Webex Recording Format Player Versiont29
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.66% | 0.7 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.