PT-2008-5058 · Vmware · Vmware Player+3

Publicado

2008-09-03

·

Atualizado

2018-10-31

·

CVE-2008-3698

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VMware Workstation versions 5.5.x through 5.5.7 VMware Workstation versions 6.0.x through 6.0.4 VMware Player versions 1.x through 1.0.7 VMware Player versions 2.x through 2.0.4 VMware ACE versions 1.x through 1.0.6 VMware ACE versions 2.x through 2.0.4 VMware Server versions prior to 1.0.7
Description The issue allows local host OS users to gain privileges on the host OS. This is due to an unspecified vulnerability in the OpenProcess function.
Recommendations For VMware Workstation versions 5.5.x through 5.5.7, update to version 5.5.8 build 108000 or later. For VMware Workstation versions 6.0.x through 6.0.4, update to version 6.0.5 build 109488 or later. For VMware Player versions 1.x through 1.0.7, update to version 1.0.8 build 108000 or later. For VMware Player versions 2.x through 2.0.4, update to version 2.0.5 build 109488 or later. For VMware ACE versions 1.x through 1.0.6, update to version 1.0.7 build 108880 or later. For VMware ACE versions 2.x through 2.0.4, update to version 2.0.5 build 109488 or later. For VMware Server versions prior to 1.0.7, update to version 1.0.7 build 108231 or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-3698

Produtos afetados

Vmware Ace
Vmware Player
Vmware Server
Vmware Workstation