7.2

CVE-2008-1362

VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, VMware ACE 2.0.x before 2.0.1 and 1.0.x before 1.0.5, and VMware Server 1.0.x before 1.0.5 on Windows allow local users to gain privileges or cause a denial of service by impersonating the authd process through an unspecified use of an "insecurely created named pipe," a different vulnerability than CVE-2008-1361.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
VMware ≫ Ace Version 1.0
VMware ≫ Ace Version 2.0
VMware ≫ Player Version 1.0.2
VMware ≫ Player Version 1.0.3
VMware ≫ Player Version 1.0.4
VMware ≫ Player Version 1.0.5
VMware ≫ Player Version 2.0
VMware ≫ Player Version 2.0.1
VMware ≫ Player Version 2.0.2
VMware ≫ Server Version 1.0.3
VMware ≫ Vmware Server Version 1.0.2
VMware ≫ Vmware Server Version 1.0.4
VMware ≫ Vmware Workstation Version 5.5.5
VMware ≫ Vmware Workstation Version 6.0.1
VMware ≫ Vmware Workstation Version 6.0.2
VMware ≫ Workstation Version 5.5
VMware ≫ Workstation Version 5.5.3_build_34685
VMware ≫ Workstation Version 5.5.3_build_42958
VMware ≫ Workstation Version 5.5.4
VMware ≫ Workstation Version 5.5.4_build_44386
VMware ≫ Workstation Version 6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.36% 0.277
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://lists.vmware.com/pipermail/security-announce/2008/000008.html
Patch
http://www.securityfocus.com/archive/1/489739/100/0/threaded
http://www.securityfocus.com/bid/28276
http://www.vmware.com/security/advisories/VMSA-2008-0005.html
Patch
http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html
Patch
http://www.vmware.com/support/player/doc/releasenotes_player.html
Patch
http://www.vmware.com/support/player2/doc/releasenotes_player2.html
Patch
http://www.vmware.com/support/server/doc/releasenotes_server.html
Patch
http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html
Patch
http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html
Patch
http://www.vupen.com/english/advisories/2008/0905/references
http://security.gentoo.org/glsa/glsa-201209-25.xml
http://securityreason.com/securityalert/3755
http://securitytracker.com/id?1019621
https://exchange.xforce.ibmcloud.com/vulnerabilities/41259