cbcvebase.
CVE-2017-4901
published 2017-06-08

CVE-2017-4901: The drag-and-drop (DnD) function in VMware Workstation 12.x before version 12.5.4 and Fusion 8.x before version 8.5.5 has an out-of-bounds memory access…

critical9.9CVSS 3.0
AVNACLPRLUINSCCHIHAH
EXPLOIT
The drag-and-drop (DnD) function in VMware Workstation 12.x before version 12.5.4 and Fusion 8.x before version 8.5.5 has an out-of-bounds memory access vulnerability. This may allow a guest to execute code on the operating system that runs Workstation or Fusion.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
vmwareesxi
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion
vmwarefusion_pro
vmwarefusion_pro_fusion
vmwarevmware_fusion
vmwarevmware_workstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation_player
vmwareworkstation_pro