CVE-2011-1787

CWE-362Race Condition5 documents5 sources
Severity
6.9MEDIUM
EPSS
0.1%
top 79.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 6
Latest updateMay 17

Description

Race condition in mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1 allows guest OS users to gain privileges on the guest OS by mounting a filesystem on top of an arbitrary directory.

CVSS vector

AV:L/AC:M/C:C/I:C/A:CExploitability: 3.4 | Impact: 10.0

Affected Packages6 packages

NVDvmware/esxi3.5, 4.0, 4.1+2
NVDvmware/fusion3.1, 3.1.1, 3.1.2+2
NVDvmware/player4 versions+3
NVDvmware/workstation7.1.1, 7.1.2, 7.1.3+2
NVDvmware/esx4 versions+3

Patches

🔴Vulnerability Details

3
GHSA
GHSA-cm43-w9vf-5r6r: Race condition in mount2022-05-17
OSV
CVE-2011-1787: Race condition in mount2011-06-06
CVEList
CVE-2011-1787: Race condition in mount2011-06-06

📋Vendor Advisories

1
Debian
CVE-2011-1787: open-vm-tools - Race condition in mount.vmhgfs in the VMware Host Guest File System (HGFS) in VM...2011
CVE-2011-1787 (MEDIUM CVSS 6.9) | Race condition in mount.vmhgfs in t | cvebase.io