The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0.1 build 227600 on Windows might allow host OS users to gain privileges by placing a Trojan horse program at an unspecified location on the host OS disk.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://security.gentoo.org/glsa/glsa-201209-25.xml | vendor advisory |
http://secunia.com/advisories/39206 | third party advisory vendor advisory |
http://lists.vmware.com/pipermail/security-announce/2010/000090.html | mailing list patch vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html | mailing list |
http://www.vmware.com/security/advisories/VMSA-2010-0007.html | patch vendor advisory |
http://www.securityfocus.com/bid/39397 | vdb entry |
http://securitytracker.com/id?1023834 | vdb entry |
http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html | mailing list |