Vulnerabilities > Parallels > Parallels Desktop > Medium

DATE CVE VULNERABILITY TITLE RISK
2007-05-02 CVE-2007-2455 Denial-Of-Service vulnerability in Parallels Desktop for Mac OS X
Parallels allows local users to cause a denial of service (virtual machine abort) via (1) certain INT instructions, as demonstrated by INT 0xAA; (2) an IRET instruction when an invalid address is at the top of the stack; (3) a malformed MOVNTI instruction, as demonstrated by using a register as a destination; or a write operation to (4) SEGR6 or (5) SEGR7.
low complexity
parallels
6.1
2007-05-02 CVE-2007-2454 Local Security vulnerability in Parallels Desktop for Mac OS X
Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtual machine and possibly execute arbitrary code in the host operating system via unspecified vectors related to bitblt operations.
local
low complexity
parallels
6.8