cbcvebase.
CVE-2017-4936
published 2017-11-17

CVE-2017-4936: VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability in JPEG2000 parser…

high7.8CVSS 3.0
AVLACHPRLUINSCCHIHAH
VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability in JPEG2000 parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of Service on the Windows OS that runs Workstation. In the case of a Horizon View Client, this may allow a View desktop to execute code or perform a Denial of Service on the Windows OS that runs the Horizon View Client.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
vmwarefusion_pro
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view
vmwarehorizon_view_client_for_windows
vmwarevmware_fusion
vmwarevmware_horizon
vmwarevmware_workstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation
vmwareworkstation