The frame decompression functionality in the VMnc media codec in VMware Movie Decoder before 6.5.5 build 328052 and 7.x before 7.1.2 build 301548, VMware Workstation 6.5.x before 6.5.5 build 328052 and 7.x before 7.1.2 build 301548 on Windows, VMware Player 2.5.x before 2.5.5 build 246459 and 3.x before 3.1.2 build 301548 on Windows, and VMware Server 2.x on Windows does not properly validate an unspecified size field, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted video file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-12-06T21:00:00

Updated: 2024-08-07T03:43:14.430Z

Reserved: 2010-11-18T00:00:00

Link: CVE-2010-4294

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-12-06T21:05:49.373

Modified: 2018-10-10T20:08:00.677

Link: CVE-2010-4294

cve-icon Redhat

No data.