{"api_version":"1","generated_at":"2026-07-23T10:19:49+00:00","cve":"CVE-2007-0062","urls":{"html":"https://cve.report/CVE-2007-0062","api":"https://cve.report/api/cve/CVE-2007-0062.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-0062","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-0062"},"summary":{"title":"CVE-2007-0062","description":"Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528; allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a malformed DHCP packet with a large dhcp-max-message-size that triggers a stack-based buffer overflow, related to servers configured to send many DHCP options to clients.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-09-21 19:17:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-119","CWE-189","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://wiki.rpath.com/Advisories:rPSA-2009-0041","name":"http://wiki.rpath.com/Advisories:rPSA-2009-0041","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Advisories:rPSA-2009-0041 - rPath Wiki","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=339561","name":"https://bugzilla.redhat.com/show_bug.cgi?id=339561","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Bug 339561 – CVE-2007-0062 dhcpd possible DoS via large max-message-size option","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/player/doc/releasenotes_player.html","name":"http://www.vmware.com/support/player/doc/releasenotes_player.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Player Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html","name":"http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE Security Summary Report: SUSE-SR:2009:005","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.iss.net/threats/275.html","name":"http://www.iss.net/threats/275.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMWare DHCP Server Remote Code Execution Vulnerabilities","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200711-23.xml","name":"http://security.gentoo.org/glsa/glsa-200711-23.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Gentoo Linux Documentation\n--\n  VMware Workstation and Player: Multiple vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html","name":"http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[Full-Disclosure] Mailing List Charter","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:153","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:153","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Support / Security / Advisories /  / MDVSA-2009:153 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200808-05.xml","name":"http://security.gentoo.org/glsa/glsa-200808-05.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"ISC DHCP: Denial of Service — Gentoo Linux Documentation","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/server/doc/releasenotes_server.html","name":"http://www.vmware.com/support/server/doc/releasenotes_server.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Server Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33102","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33102","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/usn-543-1","name":"http://www.ubuntu.com/usn/usn-543-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"USN-543-1: VMWare vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/501759/100/0/threaded","name":"http://www.securityfocus.com/archive/1/501759/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/34263","name":"http://secunia.com/advisories/34263","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"rPath update for dhclient, dhcp, and  libdhcp4client - Secunia Advisories - Vulnerability Information - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html","name":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware ACE Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/27706","name":"http://secunia.com/advisories/27706","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Gentoo update for vmware - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/31396","name":"http://secunia.com/advisories/31396","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Gentoo update for dhcp - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1018717","name":"http://www.securitytracker.com/id?1018717","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"VMware DHCP Bugs Let Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html","name":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Workstation 6 Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html","name":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Player Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://bugs.gentoo.org/show_bug.cgi?id=227135","name":"http://bugs.gentoo.org/show_bug.cgi?id=227135","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Gentoo Bug 227135 - net-misc/dhcp <3.1.1 dhcp-max-message-size DoS (CVE-2007-0062)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/27694","name":"http://secunia.com/advisories/27694","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Ubuntu update for vmware - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html","name":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Workstation 5.5 Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/3229","name":"http://www.vupen.com/english/advisories/2007/3229","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/26890","name":"http://secunia.com/advisories/26890","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"VMWare Products Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/25729","name":"http://www.securityfocus.com/bid/25729","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware Workstation DHCP Server Multiple Remote Code Execution Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html","name":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"VMware ACE Release Notes","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-0062","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-0062","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"ace","cpe6":"1.0.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"ace","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"player","cpe6":"1.0.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"player","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"server","cpe6":"1.0.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"vmware_workstation","cpe6":"6.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"3.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"4.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"4.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"4.5.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.0_build_13124","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.1_build_19175","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.3_build_34685","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.3_build_42958","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"5.5.4_build_44386","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"62","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"vmware","cpe5":"workstation","cpe6":"6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[{"cvename":"CVE-2007-0062","organization":"Red Hat","lastmodified":"2008-06-03","contributor":"Mark J Cox","statementText":"The Red Hat Security Response Team has rated this issue as having low security impact. The risks associated with fixing this bug are greater than the low severity security risk. We therefore currently have no plans to fix this flaw in Red Hat Enterprise Linux 2.1, 3, 4, or 5: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2007-0062","cve_year":"2007","cve_id":"62","crc32":"d86ec305"}],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T12:03:37.108Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20070920 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player","tags":["mailing-list","x_refsource_FULLDISC","x_transferred"],"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html"},{"name":"25729","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/25729"},{"name":"GLSA-200711-23","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200711-23.xml"},{"name":"20090312 rPSA-2009-0041-1 dhclient dhcp libdhcp4client","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/501759/100/0/threaded"},{"name":"USN-543-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/usn-543-1"},{"name":"1018717","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1018717"},{"name":"ADV-2007-3229","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/3229"},{"name":"27694","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/27694"},{"name":"31396","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/31396"},{"name":"20070919 VMWare DHCP Server Remote Code Execution Vulnerabilities","tags":["third-party-advisory","x_refsource_ISS","x_transferred"],"url":"http://www.iss.net/threats/275.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/server/doc/releasenotes_server.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://wiki.rpath.com/Advisories:rPSA-2009-0041"},{"name":"dhcp-param-overflow(33102)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33102"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=339561"},{"name":"GLSA-200808-05","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200808-05.xml"},{"name":"MDVSA-2009:153","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:153"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html"},{"name":"SUSE-SR:2009:005","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html"},{"name":"26890","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/26890"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html"},{"name":"34263","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/34263"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/player/doc/releasenotes_player.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html"},{"name":"27706","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/27706"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://bugs.gentoo.org/show_bug.cgi?id=227135"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-09-19T00:00:00.000Z","descriptions":[{"lang":"en","value":"Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528; allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a malformed DHCP packet with a large dhcp-max-message-size that triggers a stack-based buffer overflow, related to servers configured to send many DHCP options to clients."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20070920 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player","tags":["mailing-list","x_refsource_FULLDISC"],"url":"http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html"},{"name":"25729","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/25729"},{"name":"GLSA-200711-23","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200711-23.xml"},{"name":"20090312 rPSA-2009-0041-1 dhclient dhcp libdhcp4client","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/501759/100/0/threaded"},{"name":"USN-543-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/usn-543-1"},{"name":"1018717","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1018717"},{"name":"ADV-2007-3229","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/3229"},{"name":"27694","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/27694"},{"name":"31396","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/31396"},{"name":"20070919 VMWare DHCP Server Remote Code Execution Vulnerabilities","tags":["third-party-advisory","x_refsource_ISS"],"url":"http://www.iss.net/threats/275.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/server/doc/releasenotes_server.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://wiki.rpath.com/Advisories:rPSA-2009-0041"},{"name":"dhcp-param-overflow(33102)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33102"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=339561"},{"name":"GLSA-200808-05","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200808-05.xml"},{"name":"MDVSA-2009:153","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:153"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html"},{"name":"SUSE-SR:2009:005","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html"},{"name":"26890","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/26890"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html"},{"name":"34263","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/34263"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/player/doc/releasenotes_player.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html"},{"name":"27706","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/27706"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://bugs.gentoo.org/show_bug.cgi?id=227135"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-0062","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528; allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a malformed DHCP packet with a large dhcp-max-message-size that triggers a stack-based buffer overflow, related to servers configured to send many DHCP options to clients."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20070920 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player","refsource":"FULLDISC","url":"http://lists.grok.org.uk/pipermail/full-disclosure/2007-September/065902.html"},{"name":"25729","refsource":"BID","url":"http://www.securityfocus.com/bid/25729"},{"name":"GLSA-200711-23","refsource":"GENTOO","url":"http://security.gentoo.org/glsa/glsa-200711-23.xml"},{"name":"20090312 rPSA-2009-0041-1 dhclient dhcp libdhcp4client","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/501759/100/0/threaded"},{"name":"USN-543-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/usn-543-1"},{"name":"1018717","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1018717"},{"name":"ADV-2007-3229","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/3229"},{"name":"27694","refsource":"SECUNIA","url":"http://secunia.com/advisories/27694"},{"name":"31396","refsource":"SECUNIA","url":"http://secunia.com/advisories/31396"},{"name":"20070919 VMWare DHCP Server Remote Code Execution Vulnerabilities","refsource":"ISS","url":"http://www.iss.net/threats/275.html"},{"name":"http://www.vmware.com/support/server/doc/releasenotes_server.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/server/doc/releasenotes_server.html"},{"name":"http://wiki.rpath.com/Advisories:rPSA-2009-0041","refsource":"CONFIRM","url":"http://wiki.rpath.com/Advisories:rPSA-2009-0041"},{"name":"dhcp-param-overflow(33102)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33102"},{"name":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html"},{"name":"https://bugzilla.redhat.com/show_bug.cgi?id=339561","refsource":"CONFIRM","url":"https://bugzilla.redhat.com/show_bug.cgi?id=339561"},{"name":"GLSA-200808-05","refsource":"GENTOO","url":"http://security.gentoo.org/glsa/glsa-200808-05.xml"},{"name":"MDVSA-2009:153","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:153"},{"name":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/player2/doc/releasenotes_player2.html"},{"name":"SUSE-SR:2009:005","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html"},{"name":"26890","refsource":"SECUNIA","url":"http://secunia.com/advisories/26890"},{"name":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/ace/doc/releasenotes_ace.html"},{"name":"34263","refsource":"SECUNIA","url":"http://secunia.com/advisories/34263"},{"name":"http://www.vmware.com/support/player/doc/releasenotes_player.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/player/doc/releasenotes_player.html"},{"name":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html"},{"name":"27706","refsource":"SECUNIA","url":"http://secunia.com/advisories/27706"},{"name":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html","refsource":"CONFIRM","url":"http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html"},{"name":"http://bugs.gentoo.org/show_bug.cgi?id=227135","refsource":"CONFIRM","url":"http://bugs.gentoo.org/show_bug.cgi?id=227135"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-0062","datePublished":"2007-09-21T18:00:00.000Z","dateReserved":"2007-01-04T00:00:00.000Z","dateUpdated":"2024-08-07T12:03:37.108Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-09-21 19:17:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-119","CWE-189","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:ace:1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"D9C6150A-2DF3-4F7B-B024-0F3DBB686124"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:ace:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A8E1A5AA-BD9F-4263-B7C6-E744323C4D74"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:player:1.0.4:*:*:*:*:*:*:*","matchCriteriaId":"6F2F6AF4-5987-43BC-9183-5DF7D6DE1EFE"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:player:2.0:*:*:*:*:*:*:*","matchCriteriaId":"2F7AD12A-26C9-48AD-A32A-0F56545DF8E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:server:1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"B8DD6D27-1335-44EF-8B69-A9163A67BC2D"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:vmware_workstation:6.0.1:*:*:*:*:*:*:*","matchCriteriaId":"5B7632A4-D120-434D-B35A-303640DB37AB"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:3.4:*:*:*:*:*:*:*","matchCriteriaId":"B7A688A2-3E9C-4AA3-832B-300A5A311C43"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:4.0:*:*:*:*:*:*:*","matchCriteriaId":"89098CFF-4696-4BD9-9BC9-D7C2D92FE729"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"A30DFFE7-EB73-4A88-A23B-9B386C091314"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:4.0.2:*:*:*:*:*:*:*","matchCriteriaId":"9A6C230D-7BAA-4A77-9E96-B1B994F4AAC2"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:4.5.2:*:*:*:*:*:*:*","matchCriteriaId":"AD0FE7C5-2C46-4B59-9242-A03B986C07DF"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.0_build_13124:*:*:*:*:*:*:*","matchCriteriaId":"B4BCB22F-7B9A-493B-AE19-18D0C15EA778"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.1:*:*:*:*:*:*:*","matchCriteriaId":"294B621F-6C1A-4571-AE13-49495680D255"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.1_build_19175:*:*:*:*:*:*:*","matchCriteriaId":"33D6D4DD-13D2-4EA0-A7D7-367C3809ABAB"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.3_build_34685:*:*:*:*:*:*:*","matchCriteriaId":"51C6D608-64DE-4CC4-9869-3342E8FD707F"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.3_build_42958:*:*:*:*:*:*:*","matchCriteriaId":"DDEAB605-03F6-4968-8A48-126C7C711043"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.4:*:*:*:*:*:*:*","matchCriteriaId":"16A1141D-9718-4A22-8FF2-AEAD28E07291"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:5.5.4_build_44386:*:*:*:*:*:*:*","matchCriteriaId":"AE2ADE72-4F19-4E73-AC3E-7038FE0D38B8"},{"vulnerable":true,"criteria":"cpe:2.3:a:vmware:workstation:6.0:*:*:*:*:*:*:*","matchCriteriaId":"89329F80-7134-4AB2-BDA3-E1B887F633B0"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"62","Ordinal":"1","Title":"CVE-2007-0062","CVE":"CVE-2007-0062","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"62","Ordinal":"1","NoteData":"Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528; allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a malformed DHCP packet with a large dhcp-max-message-size that triggers a stack-based buffer overflow, related to servers configured to send many DHCP options to clients.","Type":"Description","Title":"CVE-2007-0062"},{"CveYear":"2007","CveId":"62","Ordinal":"2","NoteData":"2007-09-21","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"62","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}