PT-2012-4625 · Vmware · Vmware Player+2

Published

2012-06-14

·

Updated

2012-06-15

·

CVE-2012-3289

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions VMware Workstation versions 8.0 through 8.0.3 VMware Player versions 4.0 through 4.0.3 VMware ESXi versions 3.5 through 5.0 VMware ESX versions 3.5 through 4.1
Description The issue allows remote attackers to cause a denial of service, resulting in a guest OS crash, via crafted traffic from a remote virtual device.
Recommendations For VMware Workstation versions 8.0 through 8.0.3, update to version 8.0.4 or later. For VMware Player versions 4.0 through 4.0.3, update to version 4.0.4 or later. For VMware ESXi versions 3.5 through 5.0, update to a version later than 5.0. For VMware ESX versions 3.5 through 4.1, update to a version later than 4.1.

Fix

DoS

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-3289

Affected Products

Vmware Esxi
Vmware Player
Vmware Workstation