Cisco WebEx Recording Format Player atas32.dll Memory Corruption (CVE-2012-3939)
| Check Point Reference: | CPAI-2012-646 | |
| Date Published: | ||
| Severity: | ||
| Source: | Cisco Advisory cisco-sa-20121010 | |
| Industry Reference(s): | CVE-2012-3939 |
|
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? Cisco Systems WebEx Player T27LD Prior To 3.29.3210 Cisco Systems WebEx Player T28L Prior To 28.4.0.14953 |
||
| Vulnerability Description A remote code execution vulnerability has been reported in Cisco WebEx Recording Format (WRF) Player. |
||
|
Vulnerability Details The vulnerability is due to a memory corruption when the WRF player handles specially crafted WRF files. A remote attacker can exploit this issue by enticing an affected user to open a specially crafted WRF file. Successful exploitation would result in the execution of arbitrary code on the target host in the context of the application. |
Protection Overview
This protection will detect and block the transferring of specially crafted WRF files.
In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.