CVE-2017-4898
VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.39%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable. Successful exploitation of this issue may allow normal users to escalate privileges to System in the host machine where VMware Workstation is installed.
- CVSS 3.0
- 8.8 HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- EPSS
- 0.39% probability · 33th percentile
- CISA KEV
- Not listed
- Affected
- vmware/workstation player · vmware/workstation pro
- Source
- security@vmware.com
References
- http://www.securityfocus.com/bid/96772Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1037979
- http://www.vmware.com/security/advisories/VMSA-2017-0003.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/bid/96772Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1037979
- http://www.vmware.com/security/advisories/VMSA-2017-0003.htmlPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.