CERT mailing list archives

Cisco Releases Security Advisory for WebEx Players


From: "US-CERT" <US-CERT () ncas us-cert gov>
Date: Thu, 08 May 2014 11:26:47 -0500

NCCIC / US-CERT

National Cyber Awareness System:

Cisco Releases Security Advisory for WebEx Players [ 
https://www.us-cert.gov/ncas/current-activity/2014/05/08/Cisco-Releases-Security-Advisory-WebEx-Players ] 05/08/2014 
11:14 AM EDT 
Original release date: May 08, 2014

Cisco has released a security advisory to address multiple buffer overflow vulnerabilities in Cisco WebEx Recording 
Format and Advanced Recording Format Players. Successful exploitation of the vulnerabilities could cause an affected 
player to crash or allow a remote attacker to execute arbitrary code.

The following updates are available:


  * Cisco WebEx Business Suite (WBS29) client builds T29.2 or later 
  * Cisco WebEx Business Suite (WBS28) client builds T28.12 or later 
  * Cisco WebEx Business Suite (WBS27) client builds T27TLSP32EP16 (27.32.16) or later 
  * Cisco WebEx 11 versions prior to 1.2.10 with client builds T28.12 or later 
  * Cisco WebEx Meetings Server client builds 2.0.0.1677 or later 
  * Cisco WebEx Meetings Server client builds Orion 2.0 or later 

Users and administrators are encouraged to review the Cisco Security Advisory [ 
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140507-webex ] and apply the necessary 
updates.

________________________________________________________________________

This product is provided subject to this Notification [ http://www.us-cert.gov/privacy/notification ] and this Privacy 
& Use [ http://www.us-cert.gov/privacy/ ] policy.

________________________________________________________________________

OTHER RESOURCES: Contact Us [ http://www.us-cert.gov/contact-us/ ] | Security Publications [ 
http://www.us-cert.gov/security-publications ] | Alerts and Tips [ http://www.us-cert.gov/ncas ] | Related Resources [ 
http://www.us-cert.gov/related-resources ] 

STAY CONNECTED: Sign up for email updates [ http://public.govdelivery.com/accounts/USDHSUSCERT/subscriber/new ] 


Current thread: