Lucene search

K
cve[email protected]CVE-2007-0061
HistorySep 21, 2007 - 7:17 p.m.

CVE-2007-0061

2007-09-2119:17:00
CWE-119
web.nvd.nist.gov
27
vmware
workstation
player
ace
server
dhcp
vulnerability
code execution
remote attack

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.183 Low

EPSS

Percentile

96.2%

The DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed packet that triggers “corrupt stack memory.”

Affected configurations

NVD
Node
vmwareaceRange1.01.0.3
OR
vmwareaceRange2.02.0.1
OR
vmwareplayerRange1.01.0.5
OR
vmwareplayerRange2.02.0.1
OR
vmwareserverRange1.01.0.4
OR
vmwareworkstationRange5.55.5.5
OR
vmwareworkstationRange6.06.0.1
OR
vmwareesxMatch2.0.2
OR
vmwareesxMatch2.1.3
OR
vmwareesxMatch2.5.3
OR
vmwareesxMatch2.5.4
OR
vmwareesxMatch3.0.0
OR
vmwareesxMatch3.0.1
Node
canonicalubuntu_linuxMatch6.06lts
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04

References

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.183 Low

EPSS

Percentile

96.2%