CVE-2017-4898
07.06.2017, 18:29
VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable. Successful exploitation of this issue may allow normal users to escalate privileges to System in the host machine where VMware Workstation is installed.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | workstation_player | 12.0.0 |
vmware | workstation_player | 12.0.1 |
vmware | workstation_player | 12.1.0 |
vmware | workstation_player | 12.5.0 |
vmware | workstation_player | 12.5.1 |
vmware | workstation_player | 12.5.2 |
vmware | workstation_pro | 12.0.0 |
vmware | workstation_pro | 12.0.1 |
vmware | workstation_pro | 12.1.0 |
vmware | workstation_pro | 12.5.0 |
vmware | workstation_pro | 12.5.1 |
vmware | workstation_pro | 12.5.2 |
𝑥
= Vulnerable software versions