Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.902631
Category:Buffer overflow
Title:VMware Products UDF File Systems Buffer Overflow Vulnerability (VMSA-2011-0011) - Windows
Summary:VMware products are prone to a buffer overflow vulnerability.
Description:Summary:
VMware products are prone to a buffer overflow vulnerability.

Vulnerability Insight:
The flaw is due to an error when handling UDF filesystem images. This can be
exploited to cause a buffer overflow via a specially crafted ISO image file.

Vulnerability Impact:
Successful exploitation will allow attacker to execution of arbitrary code.

Affected Software/OS:
VMware Player 3.0 before 3.1.5

VMware Workstation 7.0 before 7.1.5

Solution:
Update to:

- VMware Player version 3.1.5 or later

- VMware Workstation version 7.1.5 or later

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-3868
BugTraq ID: 49942
http://www.securityfocus.com/bid/49942
Bugtraq: 20111005 VMSA-2011-0011 VMware hosted products address remote code execution vulnerability (Google Search)
http://www.securityfocus.com/archive/1/520005/100/0/threaded
http://security.gentoo.org/glsa/glsa-201209-25.xml
http://osvdb.org/76060
http://www.securitytracker.com/id?1026139
http://secunia.com/advisories/46241
CopyrightCopyright (C) 2011 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.