VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain privileges via a Trojan horse shared library in an unspecified directory.
2011-04-04T12:27:38.157
2025-04-11T00:51:21.963
Deferred
CVSSv2: 6.9 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | vmware | vix_api | 1.0 | Yes |
Application | vmware | vix_api | 1.1 | Yes |
Application | vmware | vix_api | 1.1.1 | Yes |
Application | vmware | vix_api | 1.1.2 | Yes |
Application | vmware | vix_api | 1.1.3 | Yes |
Application | vmware | vix_api | 1.1.4 | Yes |
Application | vmware | vix_api | 1.1.5 | Yes |
Application | vmware | vix_api | 1.6.0 | Yes |
Application | vmware | vix_api | 1.6.1 | Yes |
Application | vmware | vix_api | 1.7 | Yes |
Application | vmware | vix_api | 1.8 | Yes |
Application | vmware | vix_api | 1.8.1 | Yes |
Application | vmware | vix_api | 1.9 | Yes |
Operating System | linux | linux_kernel | * | No |
Application | vmware | workstation | 6.5.0 | Yes |
Application | vmware | workstation | 6.5.1 | Yes |
Application | vmware | workstation | 6.5.2 | Yes |
Application | vmware | workstation | 6.5.3 | Yes |
Application | vmware | workstation | 6.5.4 | Yes |
Application | vmware | workstation | 6.5.5 | Yes |
Application | vmware | workstation | 7.0 | Yes |
Application | vmware | workstation | 7.0.1 | Yes |
Application | vmware | workstation | 7.1 | Yes |
Application | vmware | workstation | 7.1.1 | Yes |
Application | vmware | workstation | 7.1.2 | Yes |
Application | vmware | workstation | 7.1.3 | Yes |
Operating System | linux | linux_kernel | * | No |