CVE-2017-4950
11.01.2018, 14:29
VMware Workstation and Fusion contain an integer overflow vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may lead to an out-of-bound read which can then be used to execute code on the host in conjunction with other issues. Note: IPv6 mode for VMNAT is not enabled by default.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | fusion | 8.0 ≤ 𝑥 < 8.5.10 |
vmware | fusion | 10.0 ≤ 𝑥 < 10.1.1 |
vmware | workstation | 12.0 ≤ 𝑥 < 12.5.9 |
vmware | workstation | 14.0 ≤ 𝑥 < 14.1.1 |
𝑥
= Vulnerable software versions