The DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed packet that triggers "corrupt stack memory."
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Gentoo Linux | — | Upgrade app-emulation/vmware-player.Upgrade app-emulation/vmware-workstation. | Oct 30, 2017 | Sep 21, 2007 |
| Ubuntu | — | Upgrade vmware-player-kernel-modules-2.6.15-29Upgrade vmware-tools-kernel-modules-2.6.20-16Upgrade vmware-server-kernel-modules-2.6.20-16Upgrade vmware-player-kernel-modules-2.6.17-12Upgrade vmware-player-kernel-modules-2.6.20-16 | Nov 8, 2024 | Sep 21, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub