cbcvebase.
CVE-2020-3951
published 2020-03-17

CVE-2020-3951: VMware Workstation (15.x before 15.5.2) and Horizon Client for Windows (5.x and prior before 5.4.0) contain a denial-of-service vulnerability due to a…

low3.8CVSS 3.1
AVLACLPRLUINSCCNINAL
VMware Workstation (15.x before 15.5.2) and Horizon Client for Windows (5.x and prior before 5.4.0) contain a denial-of-service vulnerability due to a heap-overflow issue in Cortado Thinprint. Attackers with non-administrative access to a guest VM with virtual printing enabled may exploit this issue to create a denial-of-service condition of the Thinprint service running on the system where Workstation or Horizon Client is installed.

Affected

2 ranges
VendorProductVersion rangeFixed in
vmwarehorizon_client>= 5.0.0 < 5.4.05.4.0
vmwareworkstation>= 15.0.0 < 15.5.215.5.2