← Back

CVE-2017-4925

nvd nist
Published: Sep 15, 2017Modified: May 13, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG, ESXi 5.5 without patch ESXi550-201709101-SG, Workstation (12.x before 12.5.3), Fusion (8.x before 8.5.4) contain a NULL pointer dereference vulnerability. This issue occurs when handling guest RPC requests. Successful exploitation of this issue may allow attackers with normal user privileges to crash their VMs.

Affected (90)

4 products
Esxi
Workstation
Workstation Pro
Fusion
Configuration A
87 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 5.5
Version 5.5 1
Version 5.5 2
Version 5.5 3a
Version 5.5 3b
Version 5.5 550-20170901001s
Version 6.0
Version 6.0 1
Version 6.0 1a
Version 6.0 1b
Version 6.0 2
Version 6.0 3
Version 6.0 3a
Version 6.0 600-201504401
Version 6.0 600-201505401
Version 6.0 600-201507101
Version 6.0 600-201507102
Version 6.0 600-201507401
Version 6.0 600-201507402
Version 6.0 600-201507403
Version 6.0 600-201507404
Version 6.0 600-201507405
Version 6.0 600-201507406
Version 6.0 600-201507407
Version 6.0 600-201509101
Version 6.0 600-201509102
Version 6.0 600-201509201
Version 6.0 600-201509202
Version 6.0 600-201509203
Version 6.0 600-201509204
Version 6.0 600-201509205
Version 6.0 600-201509206
Version 6.0 600-201509207
Version 6.0 600-201509208
Version 6.0 600-201509209
Version 6.0 600-201509210
Version 6.0 600-201510401
Version 6.0 600-201511401
Version 6.0 600-201601101
Version 6.0 600-201601102
Version 6.0 600-201601401
Version 6.0 600-201601402
Version 6.0 600-201601403
Version 6.0 600-201601404
Version 6.0 600-201601405
Version 6.0 600-201602401
Version 6.0 600-201603101
Version 6.0 600-201603102
Version 6.0 600-201603201
Version 6.0 600-201603202
Version 6.0 600-201603203
Version 6.0 600-201603204
Version 6.0 600-201603205
Version 6.0 600-201603206
Version 6.0 600-201603207
Version 6.0 600-201603208
Version 6.0 600-201605401
Version 6.0 600-201608101
Version 6.0 600-201608401
Version 6.0 600-201608402
Version 6.0 600-201608403
Version 6.0 600-201608404
Version 6.0 600-201608405
Version 6.0 600-201610410
Version 6.0 600-201611401
Version 6.0 600-201611402
Version 6.0 600-201611403
Version 6.0 600-201702101
Version 6.0 600-201702102
Version 6.0 600-201702201
Version 6.0 600-201702202
Version 6.0 600-201702203
Version 6.0 600-201702204
Version 6.0 600-201702205
Version 6.0 600-201702206
Version 6.0 600-201702207
Version 6.0 600-201702208
Version 6.0 600-201702209
Version 6.0 600-201702210
Version 6.0 600-201702211
Version 6.0 600-201702212
Version 6.0 600-201703401
Version 6.5
Version 6.5 650-201701001
Version 6.5 650-201703001
Version 6.5 650-201703002
Version 6.5 650-201704001
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
From 12.0.0 to 12.5.3
From 12.0.0 to 12.5.3
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 8.0.0 to 8.5.4
Running on/withPlatform Versions
Apple
Mac Os X
All versions

References (8)

Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.