Vulnerability Name:

CVE-2011-3868 (CCN-70318)

Assigned:2011-05-31
Published:2011-05-31
Updated:2018-10-09
Summary:Buffer overflow in VMware Workstation 7.x before 7.1.5, VMware Player 3.x before 3.1.5, VMware Fusion 3.1.x before 3.1.3, and VMware AMS allows remote attackers to execute arbitrary code via a crafted UDF filesystem in an ISO image.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
6.9 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2011-3868

Source: OSVDB
Type: UNKNOWN
76060

Source: CCN
Type: SA46241
VMware Workstation / Player / Fusion UDF Filesystem Handling Buffer Overflow Vulnerability

Source: SECUNIA
Type: UNKNOWN
46241

Source: GENTOO
Type: UNKNOWN
GLSA-201209-25

Source: CCN
Type: OSVDB ID: 76060
VMware Multiple Product UDF Filesystem ISO Image Handling Overflow

Source: BUGTRAQ
Type: UNKNOWN
20111005 VMSA-2011-0011 VMware hosted products address remote code execution vulnerability

Source: BID
Type: UNKNOWN
49942

Source: CCN
Type: BID-49942
VMware Hosted Products UDF File Systems Buffer Overflow Vulnerability

Source: SECTRACK
Type: UNKNOWN
1026139

Source: CCN
Type: VMSA-2011-0011
VMware hosted products address remote code execution vulnerability

Source: CONFIRM
Type: Patch, Vendor Advisory
http://www.vmware.com/security/advisories/VMSA-2011-0011.html

Source: XF
Type: UNKNOWN
vmware-udf-bo(70318)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:vmware:workstation:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.4:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/a:vmware:player:3.0:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.4:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/a:vmware:fusion:3.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:fusion:3.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:fusion:3.1.2:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/a:vmware:ams:*:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:vmware:fusion:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:7.1.4:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:player:3.1.4:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    vmware workstation 7.0
    vmware workstation 7.0.1
    vmware workstation 7.1
    vmware workstation 7.1.1
    vmware workstation 7.1.2
    vmware workstation 7.1.3
    vmware workstation 7.1.4
    vmware player 3.0
    vmware player 3.0.1
    vmware player 3.1
    vmware player 3.1.1
    vmware player 3.1.2
    vmware player 3.1.3
    vmware player 3.1.4
    vmware fusion 3.1
    vmware fusion 3.1.1
    vmware fusion 3.1.2
    vmware ams *
    vmware fusion 3.1.2
    vmware player 3.1.2
    vmware workstation 7.1.3
    vmware workstation 7.1.4
    vmware player 3.1.4