CVE-2010-4296
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/12/2010
Last modified:
11/04/2025
Description
vmware-mount in VMware Workstation 7.x before 7.1.2 build 301548 on Linux, VMware Player 3.1.x before 3.1.2 build 301548 on Linux, VMware Server 2.0.2 on Linux, and VMware Fusion 3.1.x before 3.1.2 build 332101 does not properly load libraries, which allows host OS users to gain privileges via vectors involving shared object files.
Impact
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:vmware:workstation:7.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:workstation:7.0.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:workstation:7.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:workstation:7.1.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:workstation:7.1.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:player:3.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:player:3.1.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:player:3.1.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:server:2.0.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:fusion:3.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:fusion:3.1.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:vmware:fusion:3.1.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.vmware.com/pipermail/security-announce/2010/000112.html
- http://osvdb.org/69584
- http://secunia.com/advisories/42453
- http://secunia.com/advisories/42482
- http://www.securityfocus.com/archive/1/514995/100/0/threaded
- http://www.securityfocus.com/bid/45168
- http://www.securitytracker.com/id?1024819=
- http://www.securitytracker.com/id?1024820=
- http://www.vmware.com/security/advisories/VMSA-2010-0018.html
- http://www.vupen.com/english/advisories/2010/3116
- http://lists.vmware.com/pipermail/security-announce/2010/000112.html
- http://osvdb.org/69584
- http://secunia.com/advisories/42453
- http://secunia.com/advisories/42482
- http://www.securityfocus.com/archive/1/514995/100/0/threaded
- http://www.securityfocus.com/bid/45168
- http://www.securitytracker.com/id?1024819=
- http://www.securitytracker.com/id?1024820=
- http://www.vmware.com/security/advisories/VMSA-2010-0018.html
- http://www.vupen.com/english/advisories/2010/3116



