Show filters
515 Total Results
Displaying 121-130 of 515
Sort by:
Attacker Value
Unknown

CVE-2017-4898

Disclosure Date: June 07, 2017 (last updated November 26, 2024)
VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable. Successful exploitation of this issue may allow normal users to escalate privileges to System in the host machine where VMware Workstation is installed.
0
Attacker Value
Unknown

CVE-2017-4899

Disclosure Date: June 07, 2017 (last updated November 26, 2024)
VMware Workstation Pro/Player 12.x before 12.5.3 contains a security vulnerability that exists in the SVGA driver. An attacker may exploit this issue to crash the VM or trigger an out-of-bound read. Note: This issue can be triggered only when the host has no graphics card or no graphics drivers are installed.
0
Attacker Value
Unknown

CVE-2017-4915

Disclosure Date: May 22, 2017 (last updated November 26, 2024)
VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration files. Successful exploitation of this issue may allow unprivileged host users to escalate their privileges to root in a Linux host machine.
0
Attacker Value
Unknown

CVE-2017-4916

Disclosure Date: May 22, 2017 (last updated November 26, 2024)
VMware Workstation Pro/Player contains a NULL pointer dereference vulnerability that exists in the vstor2 driver. Successful exploitation of this issue may allow host users with normal user privileges to trigger a denial-of-service in a Windows host machine.
0
Attacker Value
Unknown

CVE-2017-5645

Disclosure Date: April 17, 2017 (last updated November 08, 2023)
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
Attacker Value
Unknown

CVE-2016-6489

Disclosure Date: April 14, 2017 (last updated November 26, 2024)
The RSA and DSA decryption code in Nettle makes it easier for attackers to discover private keys via a cache side channel attack.
Attacker Value
Unknown

CVE-2016-9958

Disclosure Date: April 12, 2017 (last updated November 08, 2023)
game-music-emu before 0.6.1 allows remote attackers to write to arbitrary memory locations.
0
Attacker Value
Unknown

CVE-2016-9959

Disclosure Date: April 12, 2017 (last updated November 08, 2023)
game-music-emu before 0.6.1 allows remote attackers to generate out of bounds 8-bit values.
0
Attacker Value
Unknown

CVE-2016-9957

Disclosure Date: April 12, 2017 (last updated November 08, 2023)
Stack-based buffer overflow in game-music-emu before 0.6.1.
0
Attacker Value
Unknown

CVE-2014-9847

Disclosure Date: March 20, 2017 (last updated November 26, 2024)
The jng decoder in ImageMagick 6.8.9.9 allows remote attackers to have an unspecified impact.
0