ID

VAR-201309-0034


CVE

CVE-2013-1118


TITLE

Cisco WebEx Recording Format player Vulnerable to stack-based buffer overflow

Trust: 0.8

sources: JVNDB: JVNDB-2013-003977

DESCRIPTION

Stack-based buffer overflow in Cisco WebEx Recording Format (WRF) player T27 LD before SP32 EP16, T27 L10N before SP32_ORION111, and T28 before T28.8 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCuc27645. Vendors have confirmed this vulnerability Bug ID CSCuc27645 It is released as.Skillfully crafted by a third party WRF An arbitrary code may be executed via the file. An attacker can exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely result in denial-of-service conditions. This issue is being tracked by Cisco Bug ID CSCuc27645. The vulnerability stems from the software not properly handling .wrf files. The following versions are affected: 27.11.26, 27.21.10, 27.25.10, 27.32.1, 27.32.10, 28.4, 28.0.0

Trust: 1.98

sources: NVD: CVE-2013-1118 // JVNDB: JVNDB-2013-003977 // BID: 62163 // VULHUB: VHN-61120

AFFECTED PRODUCTS

vendor:ciscomodel:webex recording format playerscope:eqversion:27.32.10

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:27.32.1

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:27.11.26

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:28.0.0

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:27.25.10

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:28.4

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:eqversion:27.21.10

Trust: 1.6

vendor:ciscomodel:webex recording format playerscope:ltversion:t27 ld

Trust: 0.8

vendor:ciscomodel:webex recording format playerscope:ltversion:t27 l10n

Trust: 0.8

vendor:ciscomodel:webex recording format playerscope:eqversion:sp32_orion111

Trust: 0.8

vendor:ciscomodel:webex recording format playerscope:eqversion:sp32 ep16

Trust: 0.8

vendor:ciscomodel:webex recording format playerscope:eqversion:t28.8

Trust: 0.8

vendor:ciscomodel:webex recording format playerscope:ltversion:t28

Trust: 0.8

vendor:ciscomodel:webex wrf player t28 sp1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t28scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp32 cp1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp32scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp28scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep9scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep8scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep7scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep6scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep5scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep4scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep3scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep2scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep10scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25 ep1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp25scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep9scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep8scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep7scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep6scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep5scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep4scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep3scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep2scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep10scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21 ep1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp21scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp13scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp12scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep9scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep8scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep7scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep6scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep5scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep4scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep3scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep26scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep25scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep24scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep23scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep22scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep21scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep20scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep2scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep19scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep18scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep17scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep16scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep15scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep14scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep13scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep12scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep11scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep10scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11 ep1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp11scope:eqversion:.0.3328

Trust: 0.3

vendor:ciscomodel:webex wrf player t27 sp10scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep9scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep8scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep7scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep6scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep5scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep4scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep39scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep38scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep37scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep36scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep35scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep34scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep33scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep32scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep31scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep30scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep3scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep29scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep28scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep27scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep26scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep25scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep24scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep23scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep22scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep21scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep20scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep2scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep19scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep18scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep17scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep16scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep15scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep14scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep13scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep12scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep11scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep10scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49 ep1scope: - version: -

Trust: 0.3

vendor:ciscomodel:webex wrf player t26 sp49scope: - version: -

Trust: 0.3

sources: BID: 62163 // JVNDB: JVNDB-2013-003977 // CNNVD: CNNVD-201309-016 // NVD: CVE-2013-1118

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2013-1118
value: HIGH

Trust: 1.0

NVD: CVE-2013-1118
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201309-016
value: CRITICAL

Trust: 0.6

VULHUB: VHN-61120
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2013-1118
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-61120
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-61120 // JVNDB: JVNDB-2013-003977 // CNNVD: CNNVD-201309-016 // NVD: CVE-2013-1118

PROBLEMTYPE DATA

problemtype:CWE-119

Trust: 1.9

sources: VULHUB: VHN-61120 // JVNDB: JVNDB-2013-003977 // NVD: CVE-2013-1118

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201309-016

TYPE

buffer overflow

Trust: 0.6

sources: CNNVD: CNNVD-201309-016

CONFIGURATIONS

sources: JVNDB: JVNDB-2013-003977

PATCH

title:cisco-sa-20130904-webexurl:http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130904-webex

Trust: 0.8

title:30534url:http://tools.cisco.com/security/center/viewAlert.x?alertId=30534

Trust: 0.8

title:cisco-sa-20130904-webexurl:http://www.cisco.com/cisco/web/support/JP/111/1119/1119807_cisco-sa-20130904-webex-j.html

Trust: 0.8

sources: JVNDB: JVNDB-2013-003977

EXTERNAL IDS

db:NVDid:CVE-2013-1118

Trust: 2.8

db:BIDid:62163

Trust: 1.0

db:JVNDBid:JVNDB-2013-003977

Trust: 0.8

db:CNNVDid:CNNVD-201309-016

Trust: 0.7

db:CISCOid:20130904 MULTIPLE VULNERABILITIES IN THE CISCO WEBEX RECORDING FORMAT AND ADVANCED RECORDING FORMAT PLAYERS

Trust: 0.6

db:VULHUBid:VHN-61120

Trust: 0.1

sources: VULHUB: VHN-61120 // BID: 62163 // JVNDB: JVNDB-2013-003977 // CNNVD: CNNVD-201309-016 // NVD: CVE-2013-1118

REFERENCES

url:http://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20130904-webex

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2013-1118

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2013-1118

Trust: 0.8

url:http://www.securityfocus.com/bid/62163

Trust: 0.6

url:http://tools.cisco.com/security/center/viewalert.x?alertid=30534

Trust: 0.3

url:http://www.cisco.com/

Trust: 0.3

url:http://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20121010-webex

Trust: 0.3

sources: VULHUB: VHN-61120 // BID: 62163 // JVNDB: JVNDB-2013-003977 // CNNVD: CNNVD-201309-016 // NVD: CVE-2013-1118

CREDITS

Microsoft Vulnerability Research (MSVR)

Trust: 0.9

sources: BID: 62163 // CNNVD: CNNVD-201309-016

SOURCES

db:VULHUBid:VHN-61120
db:BIDid:62163
db:JVNDBid:JVNDB-2013-003977
db:CNNVDid:CNNVD-201309-016
db:NVDid:CVE-2013-1118

LAST UPDATE DATE

2024-08-14T14:14:21.370000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-61120date:2013-09-06T00:00:00
db:BIDid:62163date:2013-09-04T00:00:00
db:JVNDBid:JVNDB-2013-003977date:2013-09-09T00:00:00
db:CNNVDid:CNNVD-201309-016date:2013-09-09T00:00:00
db:NVDid:CVE-2013-1118date:2013-09-06T13:38:24.643

SOURCES RELEASE DATE

db:VULHUBid:VHN-61120date:2013-09-06T00:00:00
db:BIDid:62163date:2013-09-04T00:00:00
db:JVNDBid:JVNDB-2013-003977date:2013-09-09T00:00:00
db:CNNVDid:CNNVD-201309-016date:2013-09-05T00:00:00
db:NVDid:CVE-2013-1118date:2013-09-06T11:15:37.187