CVE-2013-1662

Severity

69%

Complexity

34%

Confidentiality

165%

Per: http://www.vmware.com/security/advisories/VMSA-2013-0010.html "The issue is present when Workstation or Player are installed on a Debian-based version of Linux."

vmware-mount in VMware Workstation 8.x and 9.x and VMware Player 4.x and 5.x, on systems based on Debian GNU/Linux, allows host OS users to gain host OS privileges via a crafted lsb_release binary in a directory in the PATH, related to use of the popen library function.

Per: http://www.vmware.com/security/advisories/VMSA-2013-0010.html "The issue is present when Workstation or Player are installed on a Debian-based version of Linux."

CVSS 2.0 Base Score 6.9. CVSS Attack Vector: local. CVSS Attack Complexity: medium. CVSS Vector: (AV:L/AC:M/Au:N/C:C/I:C/A:C).

Overview

First reported 11 years ago

2013-08-24 01:55:00

Last updated 11 years ago

2013-08-26 15:14:00

Affected Software

VMWare Workstation 8.0

8.0

Vmware Workstation 8.0.0.18997

8.0.0.18997

VMWare Workstation 8.0.1

8.0.1

Vmware Workstation 8.0.1.27038

8.0.1.27038

VMWare Workstation 8.0.2

8.0.2

VMWare Workstation 8.0.3

8.0.3

VMWare Workstation 8.0.4

8.0.4

VMWare Workstation 8.0.5

8.0.5

VMWare Workstation 8.0.6

8.0.6

VMWare Workstation 9.0

9.0

VMWare Workstation 9.0.1

9.0.1

VMWare Workstation 9.0.2

9.0.2

VMware Player 4.0

4.0

Vmware Player 4.0.0.18997

4.0.0.18997

VMware Player 4.0.1

4.0.1

VMware Player 4.0.2

4.0.2

VMware Player 4.0.3

4.0.3

VMware Player 4.0.4

4.0.4

VMware Player 4.0.5

4.0.5

VMWare Player 4.0.6

4.0.6

VMWare Player 5.0

5.0

VMWare Player 5.0.1

5.0.1

VMWare Player 5.0.2

5.0.2

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.