Unrated severityNVD Advisory· Published Dec 18, 2009· Updated Apr 23, 2026
CVE-2009-2880
CVE-2009-2880
Description
Buffer overflow in atrpui.dll in the Cisco WebEx WRF Player 26.x before 26.49.32 for Windows, 27.x before 27.10.x for Windows, 26.x before 26.49.35 for Mac OS X and Linux, and 27.x before 27.11.8 for Mac OS X and Linux allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WebEx Recording Format (WRF) file.
Affected products
6cpe:2.3:a:cisco:webex:26.00:*:linux:*:*:*:*:*+ 5 more
- cpe:2.3:a:cisco:webex:26.00:*:linux:*:*:*:*:*
- cpe:2.3:a:cisco:webex:26.00:*:mac_os_x:*:*:*:*:*
- cpe:2.3:a:cisco:webex:26.00:*:windows:*:*:*:*:*
- cpe:2.3:a:cisco:webex:27.00:*:linux:*:*:*:*:*
- cpe:2.3:a:cisco:webex:27.00:*:mac_os_x:*:*:*:*:*
- cpe:2.3:a:cisco:webex:27.00:*:windows:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
16- tools.cisco.com/security/center/viewAlert.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- tools.cisco.com/security/center/viewIpsSignature.xnvdPatchVendor Advisory
- www.cisco.com/en/US/products/products_security_advisory09186a0080b0a577.shtmlnvdPatchVendor Advisory
- www.vupen.com/english/advisories/2009/3574nvdPatchVendor Advisory
- secunia.com/advisories/37810nvdVendor Advisory
- securitytracker.com/idnvd
- www.fortiguard.com/advisory/FGA-2009-48.htmlnvd
- www.fortiguard.com/encyclopedia/vulnerability/cisco.webex.player.atrpui.dos.htmlnvd
- www.osvdb.org/61130nvd
- www.securityfocus.com/bid/37352nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/54841nvd
News mentions
0No linked articles in our index yet.