VMware Products Multiple Vulnerabilities (VMSA-2008-0008)

This script is Copyright (C) 2008-2015 Tenable Network Security, Inc.


Synopsis :

The remote Windows host has an application that is affected by
multiple issues.

Description :

A VMware product installed on the remote host is affected by multiple
vulnerabilities :

- A heap overflow vulnerability in VMware Host Guest File
System (HGFS), could allow a guest to execute arbitrary
code subject to the privileges of the user running 'vmx'
process. In order to successfully exploit this issue a
folder should be shared on the host system and sharing
should be enabled, which is disabled by default.
(CVE-2012-2098)

- A vulnerability in Virtual Machine Communication
Interface (VMCI), a 'experimental' feature designed for
users building client-server applications, could allow
a guest to execute arbitrary code subject to the
privileges of the user running 'vmx' process. For
successful exploitation of this issue VMCI feature
should be enabled on the host. (CVE-2012-2099)

See also :

http://www.vmware.com/security/advisories/VMSA-2008-0008.html
http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html
http://www.vmware.com/support/player2/doc/releasenotes_player2.html
http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html

Solution :

Upgrade to :

- VMware Workstation 6.0.4 or higher.
- VMware Player 2.0.4 or higher.
- VMware ACE 2.0.4 or higher.

Risk factor :

Medium / CVSS Base Score : 4.6
(CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P)
CVSS Temporal Score : 3.6
(CVSS2#E:POC/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows

Nessus Plugin ID: 32503 ()

Bugtraq ID: 29443
29444

CVE ID: CVE-2008-2098
CVE-2008-2099

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now