cbcvebase.
CVE-2007-0063
published 2007-09-21

CVE-2007-0063: Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and…

PriorityP358critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
20.41%
97.2th percentile
Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.

Affected

16 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
vmwareace>= 1.0 < 1.0.31.0.3
vmwareace>= 2.0 < 2.0.12.0.1
vmwareesx
vmwareesx
vmwareesx
vmwareesx
vmwareesx
vmwareesx
vmwareplayer>= 1.0 < 1.0.51.0.5
vmwareplayer>= 2.0 < 2.0.12.0.1
vmwareserver>= 1.0 < 1.0.41.0.4
vmwareworkstation>= 5.5 < 5.5.55.5.5
vmwareworkstation>= 6.0 < 6.0.16.0.1

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.