CVE-2012-1516
published 2012-05-04CVE-2012-1516: The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of…
PriorityP347critical9.9CVSS 3.1
AVNACLPRLUINSCCHIHAH
EPSS
3.23%
86.9th percentile
The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process crash) or possibly execute arbitrary code on the host OS via vectors involving data pointers.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | vmware_fusion | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv3.19.9CRITICALCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvdv2.09.0CRITICALAV:N/AC:L/Au:S/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-35cq-g3fr-gm2p: The VMX process in VMware ESXi 3
ghsa_unreviewed·2022-05-13
CVE-2012-1516 [CRITICAL] CWE-119 GHSA-35cq-g3fr-gm2p: The VMX process in VMware ESXi 3
The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process crash) or possibly execute arbitrary code on the host OS via vectors involving data pointers.
VMware
VMware Workstation, Player, ESXi and ESX patches address critical security issues
vendor_vmware·2012-05-03·CVSS 9.9
CVE-2012-1516 [CRITICAL] VMware Workstation, Player, ESXi and ESX patches address critical security issues
VMSA-2012-0009: VMware Workstation, Player, ESXi and ESX patches address critical security issues
a. VMware host memory overwrite vulnerability (data pointers) Due to a flaw in the handler function for RPC commands, it is possible to manipulate data pointers within the VMX process. This vulnerability may allow a guest user to crash the VMX process or potentially execute code on the host.
CVEs: CVE-2012-1516, CVE-2012-1517, CVE-2012-2448, CVE-2012-2449, CVE-2012-2450
Affected products: ESXi, VMware Fusion, VMware Tools, VMware Workstation
No detection rules found.
Crowdstrike
Hypervisor Jackpotting, Part 3: Lack of Antivirus Support Opens the Door to Adversaries
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] Hypervisor Jackpotting, Part 3: Lack of Antivirus Support Opens the Door to Adversaries
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand ATT&CK in 10 Minutes or Less [VI
Crowdstrike
Hypervisor Jackpotting, Part 3: Lack of Antivirus Support Opens the Door to Adversaries
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] Hypervisor Jackpotting, Part 3: Lack of Antivirus Support Opens the Door to Adversaries
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand AT
arXiv
Identifying Relevant Information Cues for Vulnerability Assessment Using CVSS
arxiv_fulltext·2018-03-20
Identifying Relevant Information Cues for Vulnerability Assessment Using CVSS
Identifying Relevant Information Cues for Vulnerability Assessment Using
Luca Allodi
0000-0003-1600-0868
Eindhoven University of Technology
De Zaale, Eindhoven, The Netherlands, 5600 MB
[email protected]
Sebastian Banescu\ Femmer
Munich Technical University
Munich, DE
[email protected]
Kristian Beckers
Social Engineering Academy (SEA) GmbH
Frankfurt am Main, DE
[email protected]
L. Allodi et al.
## Abstract
The assessment of new vulnerabilities is an activity that accounts for information from several data sources and produces a `severity' score for the vulnerability. The Common Vulnerability Scoring System ( ) is the reference standard for this assessment. Yet, no guidance currently exists on which information aids a correct assessment and should the
http://www.securityfocus.com/bid/53369http://www.securitytracker.com/id?1027018http://www.vmware.com/security/advisories/VMSA-2012-0009.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/75373https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16810http://www.securityfocus.com/bid/53369http://www.securitytracker.com/id?1027018http://www.vmware.com/security/advisories/VMSA-2012-0009.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/75373https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16810
2012-05-04
Published