7.2
CVSSv2

CVE-2013-1406

Published: 11/02/2013 Updated: 19/09/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Virtual Machine Communication Interface (VMCI) implementation in vmci.sys in VMware Workstation 8.x prior to 8.0.5 and 9.x prior to 9.0.1 on Windows, VMware Fusion 4.1 prior to 4.1.4 and 5.0 prior to 5.0.2, VMware View 4.x prior to 4.6.2 and 5.x prior to 5.1.2 on Windows, VMware ESXi 4.0 up to and including 5.1, and VMware ESX 4.0 and 4.1 does not properly restrict memory allocation by control code, which allows local users to gain privileges via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware workstation 8.0.1.27038

vmware workstation 8.0.2

vmware workstation 8.0.3

vmware workstation 8.0.4

vmware workstation 8.0.0.18997

vmware workstation 8.0.1

vmware workstation 8.0

vmware workstation 9.0

vmware fusion 4.1

vmware fusion 4.1.1

vmware fusion 4.1.2

vmware fusion 4.1.3

vmware fusion 5.0

vmware fusion 5.0.1

vmware view 4.0.0

vmware view 5.1.0

vmware view 5.1.1

vmware view 5.0.0

vmware view 5.0.1

vmware view 4.5

vmware view 4.6.0

vmware view 4.6.1

vmware view 5.0

vmware esxi 4.0

vmware esxi 4.1

vmware esxi 5.0

vmware esxi 5.1

vmware esx 4.1

vmware esx 4.0

Exploits

/* CVE-2013-1406 exploitation PoC by Artem Shishkin, Positive Research, Positive Technologies, 02-2013 */ void __stdcall FireShell(DWORD dwSomeParam) { EscalatePrivileges(hProcessToElevate); // Equate the stack and quit the cycle #ifndef _AMD64_ __asm { pop ebx pop edi push 0xFFFFFFF8 ...