PT-2010-5404 · Vmware · Vmware Player+3

CVE-2010-4296

·

Publicado

2010-12-06

·

Atualizado

2022-12-14

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VMware Workstation versions 7.0 through 7.1.2 build 301547 VMware Player versions 3.1.x through 3.1.1 build 301547 VMware Server version 2.0.2 VMware Fusion versions 3.1.x through 3.1.1 build 332100
Description The issue is related to the improper loading of libraries by vmware-mount, which can be exploited by host OS users to gain privileges. This is achieved through vectors involving shared object files.
Recommendations For VMware Workstation versions 7.0 through 7.1.2 build 301547, update to build 301548 or later. For VMware Player versions 3.1.x through 3.1.1 build 301547, update to build 301548 or later. For VMware Server version 2.0.2, update to a version that includes the fix for this issue. For VMware Fusion versions 3.1.x through 3.1.1 build 332100, update to build 332101 or later.

Correção

Incorrect Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-4296

Produtos afetados

Vmware Fusion
Vmware Player
Vmware Server
Vmware Workstation