Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
BID:55866
Info
Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
| Bugtraq ID: | 55866 |
| Class: | Unknown |
| CVE: |
CVE-2012-3936 CVE-2012-3937 CVE-2012-3938 CVE-2012-3939 CVE-2012-3940 CVE-2012-3941 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 10 2012 12:00AM |
| Updated: | Mar 19 2015 09:16AM |
| Credit: | Beyond Security, Core Security, Codenomicon, and TELUS |
| Vulnerable: |
Cisco WebEx (Windows) 27.10 Cisco WebEx (Windows) T27 LD SP32 CP1 Cisco WebEx (Windows) T27 LD SP32 Cisco WebEx (Windows) T27 LC SP25 EP9 Cisco WebEx (Windows) T27 LC SP25 EP10 Cisco WebEx (Windows) T27 LB SP21 EP10 Cisco WebEx (Windows) T27 L SP11 EP26 Cisco WebEx (Windows) T27 FR20 Cisco WebEx (Windows) 27.00 Cisco WebEx (Mac OS X) 27.11.8 Cisco WebEx (Mac OS X) T27 SP28 Cisco WebEx (Mac OS X) T27 SP25 EP3 Cisco WebEx (Mac OS X) T27 SP23 Cisco WebEx (Mac OS X) T27 SP21 EP9 Cisco WebEx (Mac OS X) T27 SP11 EP23 Cisco WebEx (Mac OS X) T27 LD SP32 CP1 Cisco WebEx (Mac OS X) T27 LD SP32 Cisco WebEx (Mac OS X) T27 LC SP25 EP9 Cisco WebEx (Mac OS X) T27 LC SP25 EP10 Cisco WebEx (Mac OS X) T27 LB SP21 EP10 Cisco WebEx (Mac OS X) T27 L SP11 EP26 Cisco WebEx (Mac OS X) T27 FR20 Cisco WebEx (Mac OS X) 27.00 Cisco WebEx (Linux) 27.11.8 Cisco WebEx (Linux) T27 SP28 Cisco WebEx (Linux) T27 SP25 EP3 Cisco WebEx (Linux) T27 SP23 Cisco WebEx (Linux) T27 SP21 EP9 Cisco WebEx (Linux) T27 SP11 EP23 Cisco WebEx (Linux) T27 LD SP32 CP1 Cisco WebEx (Linux) T27 LD SP32 Cisco WebEx (Linux) T27 LC SP25 EP9 Cisco WebEx (Linux) T27 LC SP25 EP10 Cisco WebEx (Linux) T27 LB SP21 EP10 Cisco WebEx (Linux) T27 L SP11 EP26 Cisco WebEx (Linux) T27 FR20 Cisco WebEx (Linux) 27.00 |
| Not Vulnerable: | |
Discussion
Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
Cisco WebEx is prone to multiple remote memory-corruption vulnerabilities.
An attacker can exploit these issues to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
Cisco WebEx is prone to multiple remote memory-corruption vulnerabilities.
An attacker can exploit these issues to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
Exploit / POC
Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
Solution:
Vendor updates are available. Please see the referenced vendor advisory for more information.
Solution:
Vendor updates are available. Please see the referenced vendor advisory for more information.
References
Cisco WebEx WRF File Format Multiple Remote Memory Corruption Vulnerabilities
References:
References:
- WebEx Homepage (Cisco)