CVE-2011-1126
published 2011-04-04CVE-2011-1126: VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain…
PriorityP420medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.38%
30.6th percentile
VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain privileges via a Trojan horse shared library in an unspecified directory.
Affected
28 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | esxi | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vix_api | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
| vmware | workstation | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j2qw-vv3p-xrvq: VMware vmrun, as used in VIX API 1
ghsa_unreviewed·2022-05-14
CVE-2011-1126 [MEDIUM] GHSA-j2qw-vv3p-xrvq: VMware vmrun, as used in VIX API 1
VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain privileges via a Trojan horse shared library in an unspecified directory.
VMware
VMware vmrun utility local privilege escalation
vendor_vmware·2011-03-29·CVSS 6.9
CVE-2011-1126 [MEDIUM] VMware vmrun utility local privilege escalation
VMSA-2011-0006: VMware vmrun utility local privilege escalation
a. VMware Linux based vmrun utility local privilege escalation VMware vmrun is a utility that is used to perform various tasks on virtual machines. The vmrun utility runs on any platform with VIX libraries installed. It is installed in VMware Workstation by default. In non-standard filesystem configurations, an attacker with the ability to place files into a predefined library path, could take execution control of vmrun. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2011-1126 to this issue. VMware would like to thank Tim Brown for reporting this issue to us. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is av
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.vmware.com/pipermail/security-announce/2011/000131.htmlhttp://secunia.com/advisories/43885http://secunia.com/advisories/43943http://securityreason.com/securityalert/8173http://securitytracker.com/id?1025270http://www.securityfocus.com/archive/1/517240/100/0/threadedhttp://www.securityfocus.com/bid/47094http://www.vmware.com/security/advisories/VMSA-2011-0006.htmlhttp://www.vupen.com/english/advisories/2011/0816https://exchange.xforce.ibmcloud.com/vulnerabilities/66472http://lists.vmware.com/pipermail/security-announce/2011/000131.htmlhttp://secunia.com/advisories/43885http://secunia.com/advisories/43943http://securityreason.com/securityalert/8173http://securitytracker.com/id?1025270http://www.securityfocus.com/archive/1/517240/100/0/threadedhttp://www.securityfocus.com/bid/47094http://www.vmware.com/security/advisories/VMSA-2011-0006.htmlhttp://www.vupen.com/english/advisories/2011/0816https://exchange.xforce.ibmcloud.com/vulnerabilities/66472
2011-04-04
Published