VMware Horizon View Client 4.x < 4.7.0 Multiple Vulnerabilities (VMSA-2018-0003)
Medium Nessus Plugin ID 105787
SynopsisA virtualization application installed on the remote host is affected by multiple vulnerabilities.
DescriptionThe version of VMware Horizon View Client installed on the remote host is 4.x prior to 4.7.0. It is, therefore, affected by multiple vulnerabilities including disclosure of memory contents and a DoS.
Note that exploitation requires that virtual printing is enabled (disabled by default on Workstation, but enabled by default on Horizon View). Furthermore, the vendor states that the vulnerability needs to be used in conjunction with other bugs without further clarification.
Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.
SolutionUpgrade to VMware Horizon View Client 4.7.0 or later.