Lucene search

K
kasperskyKaspersky LabKLA10387
HistoryOct 12, 2007 - 12:00 a.m.

KLA10387 DoS vulnerability in VMware

2007-10-1200:00:00
Kaspersky Lab
threats.kaspersky.com
17

1.9 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:N/I:N/A:P

6.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.3%

An unspecified vulnerability was found in VMware products. By exploiting this vulnerability malicious users can cause denial of service. This vulnerability can be exploited remotely via vectors related to Reconfig.DLL

Original advisories

VMware advisory

Related products

VMware-Workstation

VMware-Player

VMware-Server

VMware-ACE

CVE list

CVE-2007-5438 warning

Solution

Update to latest version

VMWare Products

Impacts

  • DoS

Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.

Affected Products

  • VMware Workstation 6 versions 6.0.4 and earlierVMware Workstation 5 versions 5.5.7 and earlierVMware Player 2 versions 2.0.4 and earlierVMware Player versions 1.0.7 and earlierVMware ACE 2 versions 2.0.4 and earlierVMware ACE versions 1.0.6 and earlierVMware Server versions 1.0.6 and earlier

1.9 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:N/I:N/A:P

6.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.3%