VMware ESXi 3.5, 4.0, and 4.1 and ESX 3.5, 4.0, and 4.1 do not properly implement port-based I/O operations, which allows guest OS users to gain guest OS privileges by overwriting memory locations in a read-only memory block associated with the Virtual DOS Machine.
CVSS Details
- CVSS 3.1 Base Score: 8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Vmsa 2012 0006 | — | Upgrade VMware ESXi 3.5 to build number 604481Upgrade VMware ESXi 4.1 to build number 348481Upgrade VMware ESX 3.5 to build number 604481Upgrade VMware ESXi 4.0 to build number 660575Upgrade VMware ESX 4.0 to build number 660575Upgrade VMware ESX 4.1 to build number 348481 | Aug 17, 2012 | Apr 2, 2012 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub