Vulnerability Details CVE-2017-4934
VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow vulnerability in VMNAT device. This issue may allow a guest to execute code on the host.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.2%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 7.2
Products affected by CVE-2017-4934
-
cpe:2.3:a:vmware:fusion:8.0.0
-
cpe:2.3:a:vmware:fusion:8.0.1
-
cpe:2.3:a:vmware:fusion:8.0.2
-
cpe:2.3:a:vmware:fusion:8.1.0
-
cpe:2.3:a:vmware:fusion:8.1.1
-
cpe:2.3:a:vmware:fusion:8.5.0
-
cpe:2.3:a:vmware:fusion:8.5.1
-
cpe:2.3:a:vmware:fusion:8.5.2
-
cpe:2.3:a:vmware:fusion:8.5.3
-
cpe:2.3:a:vmware:fusion:8.5.4
-
cpe:2.3:a:vmware:fusion:8.5.5
-
cpe:2.3:a:vmware:fusion:8.5.6
-
cpe:2.3:a:vmware:fusion:8.5.7
-
cpe:2.3:a:vmware:fusion:8.5.8
-
cpe:2.3:a:vmware:workstation:12.0.0
-
cpe:2.3:a:vmware:workstation:12.0.1
-
cpe:2.3:a:vmware:workstation:12.1
-
cpe:2.3:a:vmware:workstation:12.1.1
-
cpe:2.3:a:vmware:workstation:12.5
-
cpe:2.3:a:vmware:workstation:12.5.1
-
cpe:2.3:a:vmware:workstation:12.5.2
-
cpe:2.3:a:vmware:workstation:12.5.3
-
cpe:2.3:a:vmware:workstation:12.5.4
-
cpe:2.3:a:vmware:workstation:12.5.5
-
cpe:2.3:a:vmware:workstation:12.5.6
-
cpe:2.3:a:vmware:workstation:12.5.7