The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7079.
The product dereferences a pointer that it expects to be valid but is NULL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tools | Vmware | * | 10.0.8 (including) |
Tools | Vmware | 10.0.0 (including) | 10.0.0 (including) |
Tools | Vmware | 10.0.5 (including) | 10.0.5 (including) |
Tools | Vmware | 10.0.6 (including) | 10.0.6 (including) |