CVE-2008-4915
published 2008-11-10CVE-2008-4915: The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and 1.0.x through 1.0.8; ACE 2.0.x through…
medium6.9CVSS 3.1
AVLACMAuNCCICAC
The CPU hardware emulation in VMware Workstation 6.0.5 and earlier and 5.5.8 and earlier; Player 2.0.x through 2.0.5 and 1.0.x through 1.0.8; ACE 2.0.x through 2.0.5 and earlier, and 1.0.x through 1.0.7; Server 1.0.x through 1.0.7; ESX 2.5.4 through 3.5; and ESXi 3.5, when running 32-bit and 64-bit guest operating systems, does not properly handle the Trap flag, which allows authenticated guest OS users to gain privileges on the guest OS.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | ace | 1.0 – 1.0.7 | — |
| vmware | ace | 2.0 – 2.0.5 | — |
| vmware | esx | 2.5.4 – 3.5 | — |
| vmware | esxi | — | — |
| vmware | player | 1.0.0 – 1.0.8 | — |
| vmware | player | 2.0 – 2.0.5 | — |
| vmware | server | 1.0 – 1.0.7 | — |
| vmware | vmware_esxi | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_workstation | — | — |
| vmware | workstation | 5.5 – 5.5.8 | — |
| vmware | workstation | 6.0 – 6.0.5 | — |