← Back

CVE-2018-6977

nvd nist
Published: Oct 9, 2018Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Exploitability: 2.0 / Impact: 4.0
Source: NVD

Description

VMware ESXi (6.7, 6.5, 6.0), Workstation (15.x and 14.x) and Fusion (11.x and 10.x) contain a denial-of-service vulnerability due to an infinite loop in a 3D-rendering shader. Successfully exploiting this issue may allow an attacker with normal user privileges in the guest to make the VM unresponsive, and in some cases, possibly result other VMs on the host or the host itself becoming unresponsive.

Affected (7)

3 products
Esxi
Workstation
Fusion
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 6.0
Version 6.5
Version 6.7
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
From 14.0.0 to 14.1.5
From 15.0.0 to 15.0.2
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
From 10.0.0 to 10.1.5
From 11.0.0 to 11.0.2

References (8)

Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
Third Party AdvisoryVDB Entry
Source: security@vmware.com
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory

Timeline

No history available yet.