Lucene search

K
vmwareVMwareVMSA-2012-0006
HistoryMar 29, 2012 - 12:00 a.m.

VMware ESXi and ESX address several security issues

2012-03-2900:00:00
www.vmware.com
63

0.968 High

EPSS

Percentile

99.7%

a. VMware ROM Overwrite Privilege Escalation
A flaw in the way port-based I/O is handled allows for modifying Read-Only Memory that belongs to the Virtual DOS Machine. Exploitation of this issue may lead to privilege escalation on Guest Operating Systems that run Windows 2000, Windows XP 32-bit, Windows Server 2003 32-bit or Windows Server 2003 R2 32-bit.
VMware would like to thank Derek Soeder of Ridgeway Internet Security, L.L.C. for reporting this issue to us.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2012-1515 this issues.
Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available.