CVE-2020-3951
published 2020-03-17CVE-2020-3951: VMware Workstation (15.x before 15.5.2) and Horizon Client for Windows (5.x and prior before 5.4.0) contain a denial-of-service vulnerability due to a…
low3.8CVSS 3.1
AVLACLPRLUINSCCNINAL
VMware Workstation (15.x before 15.5.2) and Horizon Client for Windows (5.x and prior before 5.4.0) contain a denial-of-service vulnerability due to a heap-overflow issue in Cortado Thinprint. Attackers with non-administrative access to a guest VM with virtual printing enabled may exploit this issue to create a denial-of-service condition of the Thinprint service running on the system where Workstation or Horizon Client is installed.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | horizon_client | >= 5.0.0 < 5.4.0 | 5.4.0 |
| vmware | workstation | >= 15.0.0 < 15.5.2 | 15.5.2 |