VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a guest RPC NULL pointer dereference vulnerability. Successful exploitation of this issue may allow attackers with normal user privileges to crash their VMs.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://www.vmware.com/security/advisories/VMSA-2017-0018.html | patch vendor advisory |
http://www.securitytracker.com/id/1039835 | third party advisory vdb entry |
http://www.securityfocus.com/bid/101887 | third party advisory vdb entry |