VMware

Esx

64 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.28%
  • Veröffentlicht 04.05.2012 16:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The VMX process in VMware ESXi 4.1 and ESX 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process crash) or possibly execute arbitrary code on the host OS via vectors involvin...

  • EPSS 1.16%
  • Veröffentlicht 04.05.2012 16:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process crash) or possibly execute arbitrary code on the host...

  • EPSS 0.91%
  • Veröffentlicht 17.04.2012 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

VMware Workstation 8.x before 8.0.2, VMware Player 4.x before 4.0.2, VMware Fusion 4.x before 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 use an incorrect ACL for the VMware Tools folder, which allows guest OS users to gain gue...

  • EPSS 0.27%
  • Veröffentlicht 02.04.2012 10:46:44
  • Zuletzt bearbeitet 11.04.2025 00:51:21

VMware ESXi 3.5, 4.0, and 4.1 and ESX 3.5, 4.0, and 4.1 do not properly implement port-based I/O operations, which allows guest OS users to gain guest OS privileges by overwriting memory locations in a read-only memory block associated with the Virtu...

  • EPSS 0.05%
  • Veröffentlicht 18.07.2011 19:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool i...

  • EPSS 2.15%
  • Veröffentlicht 26.05.2011 16:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The socket implementation in net/core/sock.c in the Linux kernel before 2.6.34 does not properly manage a backlog of received packets, which allows remote attackers to cause a denial of service (memory consumption) by sending a large amount of networ...

Exploit
  • EPSS 5.08%
  • Veröffentlicht 18.01.2011 18:03:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The igb_receive_skb function in drivers/net/igb/igb_main.c in the Intel Gigabit Ethernet (aka igb) subsystem in the Linux kernel before 2.6.34, when Single Root I/O Virtualization (SR-IOV) and promiscuous mode are enabled but no VLANs are registered,...

  • EPSS 2.06%
  • Veröffentlicht 11.01.2011 03:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked b...

  • EPSS 0.07%
  • Veröffentlicht 29.12.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

drivers/scsi/bfa/bfa_core.c in the Linux kernel before 2.6.35 does not initialize a certain port data structure, which allows local users to cause a denial of service (system crash) via read operations on an fc_host statistics file.

Exploit
  • EPSS 3.82%
  • Veröffentlicht 30.09.2010 15:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assign...