vendor:
VMware Player
by:
SecurityFocus
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: VMware Player
Affected Version From: 1.0.0rc8-20051212
Affected Version To: 1.0.0rc8-20051212
Patch Exists: Yes
Related CWE: N/A
CPE: a:vmware:vmware_player
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2005
VMware Player Denial of Service Vulnerability
VMware Player is susceptible to a denial-of-service vulnerability. This issue is due to the application's failure to properly handle excessively long data. This issue allows remote attackers to cause affected applications to crash, denying service to legitimate users. This occurs when unsuspecting users try to open malformed VMX files.
Mitigation:
Users should ensure that they are running the latest version of VMware Player and should avoid opening untrusted VMX files.