Lucene search

K
cve[email protected]CVE-2007-0063
HistorySep 21, 2007 - 7:17 p.m.

CVE-2007-0063

2007-09-2119:17:00
CWE-191
web.nvd.nist.gov
35
cve-2007-0063
emc
vmware
workstation
player
ace
server
dhcp
remote attackers
code execution
buffer overflow

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.14 Low

EPSS

Percentile

95.7%

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.

Affected configurations

NVD
Node
vmwareaceRange1.0โ€“1.0.3
OR
vmwareaceRange2.0โ€“2.0.1
OR
vmwareplayerRange1.0โ€“1.0.5
OR
vmwareplayerRange2.0โ€“2.0.1
OR
vmwareserverRange1.0โ€“1.0.4
OR
vmwareworkstationRange5.5โ€“5.5.5
OR
vmwareworkstationRange6.0โ€“6.0.1
OR
vmwareesxMatch2.0.2
OR
vmwareesxMatch2.1.3
OR
vmwareesxMatch2.5.3
OR
vmwareesxMatch2.5.4
OR
vmwareesxMatch3.0.0
OR
vmwareesxMatch3.0.1
Node
canonicalubuntu_linuxMatch6.06lts
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04

References

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.14 Low

EPSS

Percentile

95.7%