vulnerability
VMware Workstation: VMware Workstation, Fusion and Horizon View Client updates address a guest RPC NULL pointer dereference vulnerability (VMSA-2017-0018) (CVE-2017-4938)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:N/I:N/A:P) | Nov 17, 2017 | Nov 20, 2017 | Mar 30, 2026 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:N/A:P)
Published
Nov 17, 2017
Added
Nov 20, 2017
Modified
Mar 30, 2026
Description
VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a guest RPC NULL pointer dereference vulnerability. Successful exploitation of this issue may allow attackers with normal user privileges to crash their VMs.
Solution
vmware-workstation-upgrade-12_5_8
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.