Cisco · Cisco Openh264 · CVE-2014-8001
**Name of the Vulnerable Software and Affected Versions**
Cisco OpenH264 versions 1.2.0 and earlier
**Description**
The issue is related to a buffer overflow in the decode.cpp file, which allows remote attackers to execute arbitrary code via an encoded media file. This can potentially lead to remote code execution.
**Recommendations**
For Cisco OpenH264 versions 1.2.0 and earlier, update to a version later than 1.2.0 to resolve the issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.