cbcvebase.
CVE-2008-4915
published 2008-11-10

CVE-2008-4915: The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and 1.0.x through 1.0.8; ACE 2.0.x through…

PriorityP423medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.41%
33.0th percentile
The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and 1.0.x through 1.0.8; ACE 2.0.x through 2.0.5 and earlier, and 1.0.x through 1.0.7; Server 1.0.x through 1.0.7; ESX 2.5.4 through 3.5; and ESXi 3.5, when running 32-bit and 64-bit guest operating systems, does not properly handle the Trap flag, which allows authenticated guest OS users to gain privileges on the guest OS.

Affected

12 ranges
VendorProductVersion rangeFixed in
vmwareace1.0 – 1.0.7
vmwareace2.0 – 2.0.5
vmwareesx2.5.4 – 3.5
vmwareesxi
vmwareplayer1.0.0 – 1.0.8
vmwareplayer2.0 – 2.0.5
vmwareserver1.0 – 1.0.7
vmwarevmware_esxi
vmwarevmware_tools
vmwarevmware_workstation
vmwareworkstation5.5 – 5.5.8
vmwareworkstation6.0 – 6.0.5
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.