Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

VMWare Workstation Local Format String Vulnerability

A potential format string handling vulnerability is reported to exist in the VMWare workstation executable. It is reported that the affected executable does not correctly handle format specifier characters that are passed to the application as a command line argument. Although unconfirmed, under circumstances where the affected VMWare application is installed with setuid privileges, this failure to handle format strings may facilitate privilege escalation.







 

Privacy Statement
Copyright 2009, SecurityFocus