PT-2012-3323 · Vmware · Vmware Esxi
Published
2012-05-04
·
Updated
2017-12-13
·
CVE-2012-1517
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
VMware ESXi versions 4.1
VMware ESX versions 4.1
Description
The issue is related to the VMX process in VMware ESXi and ESX, which does not properly handle RPC commands. This can be exploited by guest OS users to cause a denial of service, resulting in memory overwrite and process crash, or possibly execute arbitrary code on the host OS. The exploitation involves vectors related to function pointers.
Recommendations
For VMware ESXi version 4.1, update to a newer version that contains a fix for this issue.
For VMware ESX version 4.1, update to a newer version that contains a fix for this issue.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vmware Esxi