Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-2098

Опубликовано: 02 июн. 2008
Источник: nvd
CVSS2: 6.9
EPSS Низкий

Описание

Heap-based buffer overflow in the VMware Host Guest File System (HGFS) in VMware Workstation 6 before 6.0.4 build 93057, VMware Player 2 before 2.0.4 build 93057, VMware ACE 2 before 2.0.2 build 93057, and VMware Fusion before 1.1.2 build 87978, when folder sharing is used, allows guest OS users to execute arbitrary code on the host OS via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:vmware:ace_2:2.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:ace_2:2.01:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:1.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player_2:2.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player_2:2.01:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player_2:2.02:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player_2:2.03:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_workstation:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_workstation:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_workstation:6.03:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:6.0:*:*:*:*:*:*:*

EPSS

Процентиль: 28%
0.00099
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 17 лет назад

Heap-based buffer overflow in the VMware Host Guest File System (HGFS) in VMware Workstation 6 before 6.0.4 build 93057, VMware Player 2 before 2.0.4 build 93057, VMware ACE 2 before 2.0.2 build 93057, and VMware Fusion before 1.1.2 build 87978, when folder sharing is used, allows guest OS users to execute arbitrary code on the host OS via unspecified vectors.

debian
больше 17 лет назад

Heap-based buffer overflow in the VMware Host Guest File System (HGFS) ...

github
больше 3 лет назад

Heap-based buffer overflow in the VMware Host Guest File System (HGFS) in VMware Workstation 6 before 6.0.4 build 93057, VMware Player 2 before 2.0.4 build 93057, VMware ACE 2 before 2.0.2 build 93057, and VMware Fusion before 1.1.2 build 87978, when folder sharing is used, allows guest OS users to execute arbitrary code on the host OS via unspecified vectors.

EPSS

Процентиль: 28%
0.00099
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-119