VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x through 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 do not properly configure the virtual floppy device, which allows guest OS users to cause a denial of service (out-of-bounds write operation and VMX process crash) or possibly execute arbitrary code on the host OS by leveraging administrative privileges on the guest OS.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-05-04T16:00:00
Updated: 2024-08-06T19:34:25.469Z
Reserved: 2012-05-01T00:00:00
Link: CVE-2012-2449
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-05-04T16:55:01.543
Modified: 2024-11-21T01:39:07.420
Link: CVE-2012-2449
Redhat
No data.