Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtual machine and possibly execute arbitrary code in the host operating system via unspecified vectors related to bitblt operations.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-2447 | Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtual machine and possibly execute arbitrary code in the host operating system via unspecified vectors related to bitblt operations. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://osvdb.org/40228 |
|
| http://taviso.decsystem.org/virtsec.pdf |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T13:42:32.297Z
Reserved: 2007-05-02T00:00:00
Link: CVE-2007-2454
No data.
Status : Deferred
Published: 2007-05-02T17:19:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-2454
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD