Security Advisory

CVE-2017-4898

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-06-07 18:00:00
Last updated 2024-08-05 14:39:41
Assigner vmware
CVSS score not scored
State PUBLISHED

Description

VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLLs from a path defined in the local environment-variable. Successful exploitation of this issue may allow normal users to escalate privileges to System in the host machine where VMware Workstation is installed.