vulnerability

VMware Workstation: VMware Workstation, Fusion and Horizon View Client updates address a guest RPC NULL pointer dereference vulnerability (VMSA-2017-0018) (CVE-2017-4938)

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:N/A:P)
Published
Nov 17, 2017
Added
Nov 20, 2017
Modified
Mar 30, 2026

Description

VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a guest RPC NULL pointer dereference vulnerability. Successful exploitation of this issue may allow attackers with normal user privileges to crash their VMs.

Solution

vmware-workstation-upgrade-12_5_8
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.