CVE-2017-4902
- EPSS 0.06%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware ESXi 6.5 without patch ESXi650-201703410-SG and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x prior to 12.5.5; and Fusion Pro / Fusion 8.x prior to 8.5.6 have a Heap Buffer Overflow in SVGA. This issue may allow a guest...
CVE-2017-4905
- EPSS 2.07%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x...
CVE-2017-4904
- EPSS 0.1%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
The XHCI controller in VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, and 5.5 without patch ESXi550-201703401-SG; Wo...
CVE-2017-4903
- EPSS 0.07%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player ...
CVE-2017-4900
- EPSS 0.05%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware Workstation Pro/Player 12.x before 12.5.3 contains a NULL pointer dereference vulnerability that exists in the SVGA driver. Successful exploitation of this issue may allow attackers with normal user privileges to crash their VMs.
CVE-2017-4899
- EPSS 0.05%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware Workstation Pro/Player 12.x before 12.5.3 contains a security vulnerability that exists in the SVGA driver. An attacker may exploit this issue to crash the VM or trigger an out-of-bound read. Note: This issue can be triggered only when the hos...
CVE-2017-4898
- EPSS 0.11%
- Published 07.06.2017 18:29:00
- Last modified 20.04.2025 01:37:25
VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable. Successful exploitation of this issue may allow norm...
CVE-2017-4916
- EPSS 9.5%
- Published 22.05.2017 14:29:00
- Last modified 20.04.2025 01:37:25
VMware Workstation Pro/Player contains a NULL pointer dereference vulnerability that exists in the vstor2 driver. Successful exploitation of this issue may allow host users with normal user privileges to trigger a denial-of-service in a Windows host ...
CVE-2017-4915
- EPSS 11.56%
- Published 22.05.2017 14:29:00
- Last modified 20.04.2025 01:37:25
VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration files. Successful exploitation of this issue may allow unprivileged host users to escalate their privileges to root in a Linux host m...
CVE-2016-7461
- EPSS 0.15%
- Published 29.12.2016 09:59:00
- Last modified 12.04.2025 10:46:40
The drag-and-drop (aka DnD) function in VMware Workstation Pro 12.x before 12.5.2 and VMware Workstation Player 12.x before 12.5.2 and VMware Fusion and Fusion Pro 8.x before 8.5.2 allows guest OS users to execute arbitrary code on the host OS or cau...