a. Unified Access Gateway and Horizon View heap buffer-overflow vulnerability
VMware Unified Access Gateway and Horizon View contain a heap buffer-overflow vulnerability which may allow a remote attacker to execute code on the security gateway.
VMware would like to thank Claudio Moletta (redr2e) for reporting this issue to us.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the identifier CVE-2017-4907 to this issue. Column 5 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available.
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4907
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4908
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4909
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4910
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4911
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4912
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4913