KLA12099
Multiple vulnerabilities in VMware Workstation and Player

Updated: 03/10/2021
Detect date
?
09/14/2020
Severity
?
Warning
Description

Multiple vulnerabilities were found in VMware Workstation and Player. Malicious users can exploit these vulnerabilities to obtain sensitive information, cause denial of service, gain privileges.

Below is a complete list of vulnerabilities:

  1. A out of bounds read vulnerability in Cortado ThinPrint can be exploited to cause denial of service or obtain sensitive information.
  2. An information disclosure vulnerability in Cortado ThinPrint can be exploited to obtain sensitive information.
  3. A privilege escalation vulnerability in PATH configuration can be exploited to gain privileges.
  4. A denial of service vulnerability in Cortado ThinPrint can be exploited to cause denial of service.
Affected products

VMware Workstation 15.x earlier than 15.5.7
VMware Player 15.x earlier than 15.5.7

Solution

Update to the latest version
Download VMWare Workstation

Original advisories

VMSA-2020-0020

Impacts
?
OSI 
[?]

DoS 
[?]

PE 
[?]
Related products
VMware Workstation
VMware Player
CVE-IDS
?
CVE-2020-39880.0Unknown
CVE-2020-39870.0Unknown
CVE-2020-39900.0Unknown
CVE-2020-39800.0Unknown
CVE-2020-39860.0Unknown
CVE-2020-39890.0Unknown
Find out the statistics of the vulnerabilities spreading in your region