cbcvebase.
CVE-2017-4949
published 2018-01-11

CVE-2017-4949: VMware Workstation and Fusion contain a use-after-free vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may allow a guest to execute…

high7CVSS 3.0
AVLACHPRLUINSUCHIHAH
VMware Workstation and Fusion contain a use-after-free vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may allow a guest to execute code on the host. Note: IPv6 mode for VMNAT is not enabled by default.

Affected

15 ranges
VendorProductVersion rangeFixed in
vmwarefusion
vmwarefusion
vmwarefusion>= 10.0 < 10.1.110.1.1
vmwarefusion>= 8.0 < 8.5.108.5.10
vmwarefusion_pro
vmwarehorizon_client
vmwarevmware_fusion
vmwarevmware_horizon
vmwarevmware_workstation
vmwareworkstation>= 12.0 < 12.5.912.5.9
vmwareworkstation>= 14.0 < 14.1.114.1.1
vmwareworkstation_player
vmwareworkstation_pro
vmwareworkstation_pro_player
vmwareworkstation_pro_player