CVE Vulnerabilities

CVE-2015-2336

Published: Jun 13, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:A/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

TPView.dll in VMware Workstation 10.x before 10.0.6 and 11.x before 11.1.1, VMware Player 6.x before 6.0.6 and 7.x before 7.1.1, and VMware Horizon Client 3.2.x before 3.2.1, 3.3.x, and 5.x local-mode before 5.4.2 on Windows does not properly allocate memory, which allows guest OS users to execute arbitrary code on the host OS via unspecified vectors, a different vulnerability than CVE-2012-0897.

Affected Software

NameVendorStart VersionEnd Version
FusionVmware6.0 (including)6.0 (including)
FusionVmware6.0.1 (including)6.0.1 (including)
FusionVmware6.0.2 (including)6.0.2 (including)
FusionVmware6.0.3 (including)6.0.3 (including)
FusionVmware6.0.4 (including)6.0.4 (including)
FusionVmware6.0.5 (including)6.0.5 (including)
FusionVmware7.0 (including)7.0 (including)
FusionVmware7.0.1 (including)7.0.1 (including)
PlayerVmware6.0 (including)6.0 (including)
PlayerVmware6.0.1 (including)6.0.1 (including)
PlayerVmware6.0.2 (including)6.0.2 (including)
PlayerVmware6.0.3 (including)6.0.3 (including)
PlayerVmware6.0.4 (including)6.0.4 (including)
PlayerVmware6.0.5 (including)6.0.5 (including)
PlayerVmware7.0 (including)7.0 (including)
PlayerVmware7.1 (including)7.1 (including)
WorkstationVmware10.0 (including)10.0 (including)
WorkstationVmware10.0.1 (including)10.0.1 (including)
WorkstationVmware10.0.2 (including)10.0.2 (including)
WorkstationVmware10.0.3 (including)10.0.3 (including)
WorkstationVmware10.0.4 (including)10.0.4 (including)
WorkstationVmware10.0.5 (including)10.0.5 (including)
WorkstationVmware11.0 (including)11.0 (including)
WorkstationVmware11.1 (including)11.1 (including)

References