Multiple VMware Products CVE-2017-4941 Remote Stack Overflow Vulnerability
BID:102238
Info
Multiple VMware Products CVE-2017-4941 Remote Stack Overflow Vulnerability
| Bugtraq ID: | 102238 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2017-4941 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 19 2017 12:00AM |
| Updated: | Dec 19 2017 12:00AM |
| Credit: | Lilith Wyatt and another member of Cisco Talos. |
| Vulnerable: |
VMWare Workstation 12.5.7 VMWare Workstation 12.5.5 VMWare Workstation 12.5.3 VMWare Workstation 12.0 VMWare Fusion 8.5.8 VMWare Fusion 8.5.6 VMWare Fusion 8.5.4 VMWare Fusion 8.5.2 VMWare Fusion 8.1.1 VMWare Fusion 8.1 VMWare Fusion 8.0.2 VMWare Fusion 8.0.1 VMWare Fusion 8.5.5 VMWare Fusion 8.5 VMWare Fusion 8.0 VMWare Esxi 6.0 VMWare ESXi 5.5 |
| Not Vulnerable: |
VMWare Workstation 12.5.8 VMWare Fusion 8.5.9 VMWare Esxi ESXi600-201711101-SG VMWare Esxi 5.5 ESXi550-20170910 |
Discussion
Multiple VMware Products CVE-2017-4941 Remote Stack Overflow Vulnerability
Multiple VMware Products are prone to a remote stack overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
The following versions are vulnerable-
VMware ESXi 6.0 and 5.5
VMware Workstation 12.x
VMware Fusion 8.x
Multiple VMware Products are prone to a remote stack overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
The following versions are vulnerable-
VMware ESXi 6.0 and 5.5
VMware Workstation 12.x
VMware Fusion 8.x
Solution / Fix
Multiple VMware Products CVE-2017-4941 Remote Stack Overflow Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.