CVE-2018-6963
Summary
| CVE | CVE-2018-6963 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-05-22 13:29:00 UTC |
| Updated | 2018-06-26 18:23:00 UTC |
| Description | VMware Workstation (14.x before 14.1.2) and Fusion (10.x before 10.1.2) contain multiple denial-of-service vulnerabilities that occur due to NULL pointer dereference issues in the RPC handler. Successful exploitation of these issues may allow an attacker with limited privileges on the guest machine trigger a denial-of-Service of their guest machine. |
Risk And Classification
Problem Types: CWE-476
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Vmware | Fusion | All | All | All | All |
| Application | Vmware | Fusion | All | All | All | All |
| Application | Vmware | Workstation | All | All | All | All |
| Application | Vmware | Workstation | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| VMware Workstation and Fusion CVE-2018-6963 Multiple Denial of Service Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| VMware Workstation and Fusion Flaws Let Local Users Deny Service and Gain Elevated Privileges - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| VMSA-2018-0013 | CONFIRM | www.vmware.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.