New User, Welcome!     Login

<< Previous

VMware Player

Updated: VMware poor guest isolation design

*Affected products:*

This behavior is only present in Workstation 6.0, Workstation 6.0 with
ACE Option Pack, and VMware Player 2.0.

This issue does not affect any released version of VMware Server, VMware
ESX Server, or VMware GSX Server.

This issue also does not affect deployed ACE 2.0 virtual machines.

TPTI-09-02: VMWare VMnc Codec Open-DML Standard Index dwSize Heap Overflow

VMWare, Inc.

-- Affected Products:
VMWare, Inc. VMWare Server
VMWare, Inc. VMWare ACE
VMWare, Inc. VMWare Player
VMWare, Inc. VMWare Workstation

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on
vulnerable installations of multiple VMWare products. User interaction

TPTI-09-01: VMWare VMnc Codec Invalid RFB Message Type Heap Overflow

-- Affected Vendors:
VMWare, Inc.

-- Affected Products:
VMWare, Inc. VMWare Player
VMWare, Inc. VMWare Workstation
VMWare, Inc. VMWare Server
VMWare, Inc. VMWare ACE

-- Vulnerability Details:

VMware poor guest isolation design

Note that the only users who can access the VM this way are either the
same users who have powered on the VM or an administrator on the host.

*Affected products:*

This behavior is only present in Workstation 6.0 and VMware Player 2.0.

This issue does not affect any released version of VMware Server, VMware
ESX Server, or VMware GSX Server.

*How to disable this behavior*

VMware Backdoor Response Uninitialized Memory Potential VM Break

UNAFFECTED ENVIRONMENTS
-----------------------
VMware Workstation 8.0.x
VMware Player 4.0.x
VMware ESXi 4.0.0 Update 3 and later
VMware ESXi 4.1.0 Update 2
VMware ESXi 5.0.0 and later



<<Previous

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!