Lucene search

K
cve[email protected]CVE-2008-4917
HistoryDec 09, 2008 - 12:30 a.m.

CVE-2008-4917

2008-12-0900:30:00
CWE-399
web.nvd.nist.gov
35
vmware
vulnerability
memory-corruption
cve-2008-4917
nvd

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.7%

Unspecified vulnerability in VMware Workstation 5.5.8 and earlier, and 6.0.5 and earlier 6.x versions; VMware Player 1.0.8 and earlier, and 2.0.5 and earlier 2.x versions; VMware Server 1.0.9 and earlier; VMware ESXi 3.5; and VMware ESX 3.0.2 through 3.5 allows guest OS users to have an unknown impact by sending the virtual hardware a request that triggers an arbitrary physical-memory write operation, leading to memory corruption.

Affected configurations

NVD
Node
vmwareesxRange3.0.2–3.5
OR
vmwareesxiMatch3.5
OR
vmwareplayerRange1.0.0–1.0.8
OR
vmwareplayerRange2.0–2.0.5
OR
vmwareserverRange1.0–1.0.9
OR
vmwareworkstationRange5.5–5.5.8
OR
vmwareworkstationRange6.0–6.0.5

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.7%