imPC@ndo IT

Tracker / CVE-2008-4915

CVE-2008-4915

Medium 6.9

The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and 1.0.x through 1.0.8; ACE 2.0.x through 2.0.5 and earlier, and 1.0.x through 1.0.7; Server 1.0.x through 1.0.7; ESX 2.5.4 through 3.5; and ESXi 3.5, when running 32-bit and 64-bit guest operating systems, does not properly handle the Trap flag, which allows authenticated guest OS users to gain privileges on the guest OS.

Affected products and versions

vmware ace · 1.0 → 1.0.7
vmware ace · 2.0 → 2.0.5
vmware esx · 2.5.4 → 3.5
vmware esxi
vmware player · 1.0.0 → 1.0.8
vmware player · 2.0 → 2.0.5
vmware server · 1.0 → 1.0.7
vmware workstation · 5.5 → 5.5.8
vmware workstation · 6.0 → 6.0.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References