← Back

CVE-2013-1406

nvd nist
Published: Feb 11, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The Virtual Machine Communication Interface (VMCI) implementation in vmci.sys in VMware Workstation 8.x before 8.0.5 and 9.x before 9.0.1 on Windows, VMware Fusion 4.1 before 4.1.4 and 5.0 before 5.0.2, VMware View 4.x before 4.6.2 and 5.x before 5.1.2 on Windows, VMware ESXi 4.0 through 5.1, and VMware ESX 4.0 and 4.1 does not properly restrict memory allocation by control code, which allows local users to gain privileges via unspecified vectors.

Affected (39)

5 products
Workstation
Fusion
View
Esxi
Esx
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 8.0.0.18997
Version 8.0.1.27038
Version 8.0.1
Version 8.0.2
Version 8.0.3
Version 8.0.4
Version 8.0
Version 9.0
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.1.1
Version 4.1.2
Version 4.1.3
Version 4.1
Version 5.0.1
Version 5.0
Configuration C
11 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Vmware
Version 4.0.0
Version 4.0.0 u2
Version 4.5
Version 4.6.0
Version 4.6.1
Version 5.0.0
Version 5.0.0 u2
Version 5.0.1
Version 5.0
Version 5.1.0
Version 5.1.1
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration D
12 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.0
Version 4.0 1
Version 4.0 2
Version 4.0 3
Version 4.0 4
Version 4.1
Version 4.1 1
Version 4.1 2
Version 5.0
Version 5.0 1
Version 5.0 2
Version 5.1
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.0
Version 4.1

Timeline

No history available yet.