hcmon.sys in VMware Workstation 6.5.1 and previous versions, VMware Player 2.5.1 and previous versions, VMware ACE 2.5.1 and previous versions, and VMware Server 1.0.x prior to 1.0.9 build 156507 and 2.0.x prior to 2.0.1 build 156745 uses the METHOD_NEITHER communication method for IOCTLs, which allows local users to cause a denial of service via a crafted IOCTL request.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
vmware vmware workstation 6.0.0.45731 |