Cisco.WebEx.Player.atas32.DLL.Heap.Overflow

description-logoDescription

This indicates an attack attempt against one of the heap-based buffer-overflow vulnerabilities in Cisco WebEx WRF Player.
These vulnerabilities are caused by an error when the vulnerable software handles user-supplied input. They could allow remote attacker to execute arbitrary code via opening a malicious local or online WRF file.

affected-products-logoAffected Products

Cisco WebEx WRF Player 3.0 or earlier versions on Linux, Microsoft Windows and Mac OS X

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Use the solution provided by the vendor:
FG-VD-09-008: fixed in WebEx releases T26 and T27
FG-VD-09-010: fixed in WebEx releases T26SP49EP32 and T27SP10
FG-VD-09-012: fixed in WebEx releases T26SP49EP32 and T27SP10
FG-VD-09-013: fixed in WebEx releases T26SP49EP32 and T27SP10
FG-VD-09-014: fixed in WebEx releases T26LSp49EP32 and T27SP10
FG-VD-09-016: fixed in WebEx release T26SP49EP

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)