|
|
| |
Credit:
The information has been provided by Dan Rosenberg and Martin Carpenter.
The original article can be found at: http://www.securityfocus.com/bid/45167/discuss
|
| |
Vulnerable Systems:
* VMWare Workstation 7.1
* VMWare Workstation 7.0.1 build 227600
* VMWare Workstation 7.0
* VMWare Server 2.0.2
* VMWare Player 3.1
* VMWare Player 3.1
* VMWare Fusion 3.1
Immune Systems:
* VMWare Workstation 7.1.2 Build 301548
* VMWare Player 3.1.2 build 301548
* VMWare Fusion 3.1.2 Build 332101
Local attackers can exploit this issue to execute arbitrary code with elevated privileges; this may aid in other attacks. This issue only affects host systems.
Vendor Status:
VMware had issued an update for this vulnerability
Patch Availability:
http://www.vmware.com/security/advisories/VMSA-2010-0018.html
CVE Information:
CVE-2010-4295
CVE-2010-4296
Disclosure Timeline:
Issue date: 2010-12-02
Updated on: 2010-12-02 (initial release of advisory)
|
|
|