Vulnerabilities > CVE-2017-4916 - NULL Pointer Dereference vulnerability in VMWare Workstation Player and Workstation PRO
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
VMware Workstation Pro/Player contains a NULL pointer dereference vulnerability that exists in the vstor2 driver. Successful exploitation of this issue may allow host users with normal user privileges to trigger a denial-of-service in a Windows host machine.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 | |
OS | 1 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | VMware Workstation 12 Pro - Denial of Service. CVE-2017-4916. Dos exploit for Windows platform |
file | exploits/windows/dos/42140.c |
id | EDB-ID:42140 |
last seen | 2017-06-08 |
modified | 2017-06-08 |
platform | windows |
port | |
published | 2017-06-08 |
reporter | Exploit-DB |
source | https://www.exploit-db.com/download/42140/ |
title | VMware Workstation 12 Pro - Denial of Service |
type | dos |
Nessus
NASL family | Windows |
NASL id | VMWARE_WORKSTATION_WIN_VMSA_2017_0009.NASL |
description | The version of VMware Workstation installed on the remote Windows host is 12.x prior to 12.5.5. It is, therefore, affected by a NULL pointer dereference flaw in the vstor2 driver. A local attacker can exploit this to cause a denial of service condition. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 100418 |
published | 2017-05-25 |
reporter | This script is Copyright (C) 2017-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/100418 |
title | VMware Workstation 12.x < 12.5.6 vstor2 Driver NULL Pointer Dereference DoS (VMSA-2017-0009) |
code |
|
Packetstorm
data source | https://packetstormsecurity.com/files/download/142868/vmwarews12pro-dos.txt |
id | PACKETSTORM:142868 |
last seen | 2017-06-09 |
published | 2017-06-08 |
reporter | Borja Merino |
source | https://packetstormsecurity.com/files/142868/VMware-Workstation-12-Pro-Denial-Of-Service.html |
title | VMware Workstation 12 Pro Denial Of Service |