Format string vulnerability in vmware-vmrc.exe build 158248 in VMware Remote Console (aka VMrc) allows remote attackers to execute arbitrary code via unspecified vectors.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html | Broken Link |
http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html | Broken Link |
http://lists.vmware.com/pipermail/security-announce/2010/000090.html | Mailing List Patch Vendor Advisory |
http://secunia.com/advisories/39110 | Not Applicable |
http://security.gentoo.org/glsa/glsa-201209-25.xml | Third Party Advisory |
http://www.vmware.com/security/advisories/VMSA-2010-0007.html | Patch Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html | Broken Link |
http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html | Broken Link |
http://lists.vmware.com/pipermail/security-announce/2010/000090.html | Mailing List Patch Vendor Advisory |
http://secunia.com/advisories/39110 | Not Applicable |
http://security.gentoo.org/glsa/glsa-201209-25.xml | Third Party Advisory |
http://www.vmware.com/security/advisories/VMSA-2010-0007.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:08
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html - Broken Link | |
References | () http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html - Broken Link | |
References | () http://lists.vmware.com/pipermail/security-announce/2010/000090.html - Mailing List, Patch, Vendor Advisory | |
References | () http://secunia.com/advisories/39110 - Not Applicable | |
References | () http://security.gentoo.org/glsa/glsa-201209-25.xml - Third Party Advisory | |
References | () http://www.vmware.com/security/advisories/VMSA-2010-0007.html - Patch, Vendor Advisory |
Information
Published : 2010-04-12 18:30
Updated : 2024-11-21 01:08
NVD link : CVE-2009-3732
Mitre link : CVE-2009-3732
CVE.ORG link : CVE-2009-3732
JSON object : View
Products Affected
vmware
- workstation
- player
- server
- ace
microsoft
- windows
CWE
CWE-134
Use of Externally-Controlled Format String