7.9
CVSSv2

CVE-2013-3519

Published: 04/12/2013 Updated: 03/03/2014
CVSS v2 Base Score: 7.9 | Impact Score: 10 | Exploitability Score: 5.5
VMScore: 703
Vector: AV:A/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

lgtosync.sys in VMware Workstation 9.x prior to 9.0.3, VMware Player 5.x prior to 5.0.3, VMware Fusion 5.x prior to 5.0.4, VMware ESXi 4.0 up to and including 5.1, and VMware ESX 4.0 and 4.1, when a 32-bit Windows guest OS is used, allows guest OS users to gain guest OS privileges via an application that performs a crafted memory allocation.

Vulnerable Product Search on Vulmon Subscribe to Product

vmware esxi 4.0

vmware esxi 4.1

vmware esxi 5.1

vmware esxi 5.0

vmware workstation 9.0

vmware workstation 9.0.1

vmware workstation 9.0.2

vmware esx 4.0

vmware esx 4.1

vmware player 5.0.2

vmware player 5.0

vmware player 5.0.1

vmware fusion 5.0.3

vmware fusion 5.0

vmware fusion 5.0.2

vmware fusion 5.0.1