Description
Unspecified vulnerability in the virtual machine display function in VMware Workstation 6.5.1 and earlier; VMware Player 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 1.x before 1.0.9 build 156507 and 2.x before 2.0.1 build 156745; VMware Fusion before 2.0.4 build 159196; VMware ESXi 3.5; and VMware ESX 3.0.2, 3.0.3, and 3.5 allows guest OS users to execute arbitrary code on the host OS via unknown vectors, a different vulnerability than CVE-2008-4916.
Affected products
- VMware / ace2.5.1
- VMware / ace1.0 – 1.0
- VMware / ace1.0.0 – 1.0.0
- VMware / ace1.0.1 – 1.0.1
- VMware / ace1.0.2 – 1.0.2
- VMware / ace1.0.3 – 1.0.3
- VMware / ace1.0.4 – 1.0.4
- VMware / ace1.0.5 – 1.0.5
- VMware / ace1.0.6 – 1.0.6
- VMware / ace1.0.7 – 1.0.7
- VMware / ace2.0 – 2.0
- VMware / ace2.0.1 – 2.0.1
- VMware / ace2.0.2 – 2.0.2
- VMware / ace2.0.3 – 2.0.3
- VMware / ace2.0.4 – 2.0.4
- VMware / ace2.0.5 – 2.0.5
- VMware / ace2.5.0 – 2.5.0
- VMware / esx3.0.2 – 3.0.2
- VMware / esx3.0.3 – 3.0.3
- VMware / esx3.5 – 3.5
- VMware / ESXi3.5 – 3.5
- VMware / Fusion2.0.3
- VMware / Fusion1.0 – 1.0
- VMware / Fusion1.1 – 1.1
- VMware / Fusion1.1.1 – 1.1.1
- VMware / Fusion1.1.2 – 1.1.2
- VMware / Fusion1.1.3 – 1.1.3
- VMware / Fusion2.0 – 2.0
- VMware / Fusion2.0.1 – 2.0.1
- VMware / Fusion2.0.2 – 2.0.2
- VMware / player2.5.1
- VMware / player1.0.0 – 1.0.0
- VMware / player1.0.1 – 1.0.1
- VMware / player1.0.2 – 1.0.2
- VMware / player1.0.3 – 1.0.3
- VMware / player1.0.4 – 1.0.4
- VMware / player1.0.5 – 1.0.5
- VMware / player1.0.6 – 1.0.6
- VMware / player1.0.7 – 1.0.7
- VMware / player1.0.8 – 1.0.8
- VMware / player2.0 – 2.0
- VMware / player2.0.1 – 2.0.1
- VMware / player2.0.2 – 2.0.2
- VMware / player2.0.3 – 2.0.3
- VMware / player2.0.4 – 2.0.4
- VMware / player2.0.5 – 2.0.5
- VMware / player2.5 – 2.5
- VMware / server1.0 – 1.0
- VMware / server1.0.1 – 1.0.1
- VMware / server1.0.2 – 1.0.2
- VMware / server1.0.3 – 1.0.3
- VMware / server1.0.4 – 1.0.4
- VMware / server1.0.5 – 1.0.5
- VMware / server1.0.6 – 1.0.6
- VMware / server1.0.7 – 1.0.7
- VMware / server1.0.8 – 1.0.8
- VMware / server1.0.9 – 1.0.9
- VMware / server2.0 – 2.0
- VMware / Workstation6.5.1
- VMware / Workstation1.0.1 – 1.0.1
- VMware / Workstation1.0.2 – 1.0.2
- VMware / Workstation1.0.4 – 1.0.4
- VMware / Workstation1.0.5 – 1.0.5
- VMware / Workstation1.1 – 1.1
- VMware / Workstation1.1.1 – 1.1.1
- VMware / Workstation1.1.2 – 1.1.2
- VMware / Workstation2.0 – 2.0
- VMware / Workstation2.0.1 – 2.0.1
- VMware / Workstation3.2.1 – 3.2.1
- VMware / Workstation3.4 – 3.4
- VMware / Workstation4.0 – 4.0
- VMware / Workstation4.0.1 – 4.0.1
- VMware / Workstation4.0.2 – 4.0.2
- VMware / Workstation4.5.2 – 4.5.2
- VMware / Workstation5 – 5
- VMware / Workstation5.0.0 – 5.0.0
- VMware / Workstation5.5 – 5.5
- VMware / Workstation5.5.0 – 5.5.0
- VMware / Workstation5.5.1 – 5.5.1
- VMware / Workstation5.5.2 – 5.5.2
- VMware / Workstation5.5.3 – 5.5.3
- VMware / Workstation5.5.4 – 5.5.4
- VMware / Workstation5.5.5 – 5.5.5
- VMware / Workstation5.5.6 – 5.5.6
- VMware / Workstation5.5.7 – 5.5.7
- VMware / Workstation5.5.8 – 5.5.8
- VMware / Workstation6.0 – 6.0
- VMware / Workstation6.0.1 – 6.0.1
- VMware / Workstation6.0.2 – 6.0.2
- VMware / Workstation6.0.3 – 6.0.3
- VMware / Workstation6.0.4 – 6.0.4
- VMware / Workstation6.0.5 – 6.0.5
- VMware / Workstation6.5 – 6.5
References
- MISChttp://security.gentoo.org/glsa/glsa-201209-25.xml
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/49834
- MISChttp://www.securityfocus.com/bid/34471
- MISChttp://www.securitytracker.com/id?1022031
- MISChttp://osvdb.org/53634
- MISChttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6065
- VENDOR_ADVISORYhttp://www.vmware.com/security/advisories/VMSA-2009-0006.html
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2009/0944
- MAILING_LISThttp://lists.vmware.com/pipermail/security-announce/2009/000055.html
- MISChttp://www.securityfocus.com/archive/1/502615/100/0/threaded