KLA12100
Multiple vulnerabilities in VMware Workstation and Player

Обновлено: 10/03/2021
Дата обнаружения
20/10/2020
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in VMware Workstation and Player. Malicious users can exploit these vulnerabilities to obtain sensitive information, cause denial of service.

Below is a complete list of vulnerabilities:

  1. An out of bounds read vulnerability in ACPI device can be exploited to obtain sensitive information.
  2. An out of bounds write vulnerability in ACPI device can be exploited to cause denial of service.
  3. A memory leak vulnerability in VMCI host driver can be exploited to obtain sensitive information.
Пораженные продукты

VMware Workstation 15.x earlier than 15.5.7
VMware Player 15.x earlier than 15.5.7

Решение

Update to the latest version
Download VMWare Workstation

Первичный источник обнаружения
VMSA-2020-0023
Оказываемое влияние
?
OSI 
[?]

DoS 
[?]
Связанные продукты
VMware Workstation
VMware Player
CVE-IDS
CVE-2020-39810.0Unknown
CVE-2020-39820.0Unknown
CVE-2020-39950.0Unknown
Узнай статистику распространения уязвимостей в твоем регионе