CVE-2012-1518

VMware Workstation 8.x before 8.0.2, VMware Player 4.x before 4.0.2, VMware Fusion 4.x before 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 use an incorrect ACL for the VMware Tools folder, which allows guest OS users to gain guest OS privileges via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:workstation:8.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.1:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:vmware:player:4.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.2:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:vmware:fusion:4.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:4.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:4.1.1:*:*:*:*:*:*:*

Configuration 4 (hide)

OR cpe:2.3:o:vmware:esxi:3.5:*:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:3.5:1:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.0:*:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.0:1:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.0:2:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.0:3:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.0:4:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.1:*:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.1:1:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:4.1:2:*:*:*:*:*:*
cpe:2.3:o:vmware:esxi:5.0:*:*:*:*:*:*:*

Configuration 5 (hide)

OR cpe:2.3:o:vmware:esx:3.5:*:*:*:*:*:*:*
cpe:2.3:o:vmware:esx:3.5:update1:*:*:*:*:*:*
cpe:2.3:o:vmware:esx:3.5:update2:*:*:*:*:*:*
cpe:2.3:o:vmware:esx:3.5:update3:*:*:*:*:*:*
cpe:2.3:o:vmware:esx:4.0:*:*:*:*:*:*:*
cpe:2.3:o:vmware:esx:4.1:*:*:*:*:*:*:*

History

21 Nov 2024, 01:37

Type Values Removed Values Added
References () http://osvdb.org/81163 - () http://osvdb.org/81163 -
References () http://secunia.com/advisories/48782 - () http://secunia.com/advisories/48782 -
References () http://www.securityfocus.com/bid/53006 - () http://www.securityfocus.com/bid/53006 -
References () http://www.securitytracker.com/id?1026922 - () http://www.securitytracker.com/id?1026922 -
References () http://www.securitytracker.com/id?1026923 - () http://www.securitytracker.com/id?1026923 -
References () http://www.vmware.com/security/advisories/VMSA-2012-0007.html - Vendor Advisory () http://www.vmware.com/security/advisories/VMSA-2012-0007.html - Vendor Advisory
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16745 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16745 -

Information

Published : 2012-04-17 21:55

Updated : 2024-11-21 01:37


NVD link : CVE-2012-1518

Mitre link : CVE-2012-1518

CVE.ORG link : CVE-2012-1518


JSON object : View

Products Affected

vmware

  • player
  • esxi
  • esx
  • fusion
  • workstation
CWE
CWE-264

Permissions, Privileges, and Access Controls