PT-2009-3786 · Vmware · Vmware Ace+5

Publicado

2009-04-13

·

Atualizado

2018-10-30

·

CVE-2009-1244

CVSS v2.0

6.8

Média

VetorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VMware Workstation versions 6.5.1 and earlier VMware Player versions 2.5.1 and earlier VMware ACE versions 2.5.1 and earlier VMware Server versions prior to 1.0.9 build 156507 and prior to 2.0.1 build 156745 VMware Fusion versions prior to 2.0.4 build 159196 VMware ESXi version 3.5 VMware ESX versions 3.0.2, 3.0.3, and 3.5
Description The issue allows guest OS users to execute arbitrary code on the host OS via unknown vectors. This is a result of an unspecified vulnerability in the virtual machine display function.
Recommendations For VMware Workstation versions 6.5.1 and earlier, update to a version later than 6.5.1. For VMware Player versions 2.5.1 and earlier, update to a version later than 2.5.1. For VMware ACE versions 2.5.1 and earlier, update to a version later than 2.5.1. For VMware Server versions prior to 1.0.9 build 156507, update to version 1.0.9 build 156507 or later. For VMware Server versions prior to 2.0.1 build 156745, update to version 2.0.1 build 156745 or later. For VMware Fusion versions prior to 2.0.4 build 159196, update to version 2.0.4 build 159196 or later. For VMware ESXi version 3.5, update to a version later than 3.5. For VMware ESX versions 3.0.2, 3.0.3, and 3.5, update to a version later than 3.5.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2009-1244

Produtos afetados

Vmware Ace
Vmware Esxi
Vmware Fusion
Vmware Player
Vmware Server
Vmware Workstation