CVE-2009-0177

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
20/01/2009
Last modified:
09/04/2025

Description

vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 build 126130, 6.5.1 and earlier; VMware Player 2.5.1 build 126130, 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 2.0.x before 2.0.1 build 156745; and VMware Fusion before 2.0.2 build 147997 allows remote attackers to cause a denial of service (daemon crash) via a long (1) USER or (2) PASS command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vmware:ace:*:*:*:*:*:*:*:* 2.5.1 (including)
cpe:2.3:a:vmware:ace:2.5.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:* 2.0.1 (including)
cpe:2.3:a:vmware:server:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:*:*:*:*:*:*:*:* 2.5.1 (including)
cpe:2.3:a:vmware:vmware_player:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vmware_player:1.05:*:*:*:*:*:*:*