HIGH
VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, VMware ACE 2.0.x before 2.0.1 and 1.0.x before 1.0.5, and VMware Server 1.0.x before 1.0.5 on Windows allow local users to gain privileges or cause a denial of service by impersonating the authd process through an unspecified use of an "insecurely created named pipe," a different vulnerability than CVE-2008-1361
Published Mar 20, 2008
7.2
HIGHCVSS 2.0
EPSS 0.36%
Description
VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, VMware ACE 2.0.x before 2.0.1 and 1.0.x before 1.0.5, and VMware Server 1.0.x before 1.0.5 on Windows allow local users to gain privileges or cause a denial of service by impersonating the authd process through an unspecified use of an "insecurely created named pipe," a different vulnerability than CVE-2008-1361.
Affected products
No data.
OR
- 1.0
- 2.0
- 1.0.2
- 1.0.3
- 1.0.4
- 1.0.5
- 2.0
- 2.0.1
- 2.0.2
- 1.0.3
- 1.0.2
- 1.0.4
- 5.5.5
- 6.0.1
- 6.0.2
- 5.5
- 5.5.3_build_34685
- 5.5.3_build_42958
- 5.5.4
- 5.5.4_build_44386
- 6.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (15)
- http://lists.vmware.com/pipermail/security-announce/2008/000008.html mailing-listx_refsource_MLISTPatch
- http://security.gentoo.org/glsa/glsa-201209-25.xml vendor-advisoryx_refsource_GENTOO
- http://securityreason.com/securityalert/3755 third-party-advisoryx_refsource_SREASON
- http://securitytracker.com/id?1019621 vdb-entryx_refsource_SECTRACK
- http://www.securityfocus.com/archive/1/489739/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/28276 vdb-entryx_refsource_BID
- http://www.vmware.com/security/advisories/VMSA-2008-0005.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/player/doc/releasenotes_player.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/player2/doc/releasenotes_player2.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/server/doc/releasenotes_server.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html x_refsource_CONFIRMPatch
- http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html x_refsource_CONFIRMPatch
- http://www.vupen.com/english/advisories/2008/0905/references vdb-entryx_refsource_VUPEN
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41259 vdb-entryx_refsource_XF
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 20, 2008
Updated Aug 7, 2024
Reserved Mar 17, 2008
Link CVE-2008-1362
CISA Vulnrichment
Updated n/a