| Vulnerability Name: | CVE-2013-3519 (CCN-89416) |
| Assigned: | 2013-12-03 |
| Published: | 2013-12-03 |
| Updated: | 2014-03-03 |
| Summary: | lgtosync.sys in VMware Workstation 9.x before 9.0.3, VMware Player 5.x before 5.0.3, VMware Fusion 5.x before 5.0.4, VMware ESXi 4.0 through 5.1, and VMware ESX 4.0 and 4.1, when a 32-bit Windows guest OS is used, allows guest OS users to gain guest OS privileges via an application that performs a crafted memory allocation.
|
| CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)| Exploitability Metrics: | Attack Vector (AV): Local Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | | Scope: | Scope (S): Changed
| | Impact Metrics: | Confidentiality (C): High Integrity (I): High Availibility (A): High |
|
| CVSS v2 Severity: | 7.9 High (CVSS v2 Vector: AV:A/AC:M/Au:N/C:C/I:C/A:C) 5.8 Medium (Temporal CVSS v2 Vector: AV:A/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)| Exploitability Metrics: | Access Vector (AV): Adjacent_Network Access Complexity (AC): Medium Authentication (Au): None | | Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete | 6.9 Medium (CCN CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C) 5.1 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)| Exploitability Metrics: | Access Vector (AV): Local Access Complexity (AC): Medium Athentication (Au): None
| | Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete |
|
| Vulnerability Type: | CWE-264
|
| Vulnerability Consequences: | Gain Privileges |
| References: | Source: MITRE Type: CNA CVE-2013-3519
Source: CCN Type: SA55684 VMware Multiple Products LGTOSYNC Guest Privilege Escalation Vulnerability
Source: CCN Type: IBM Security Bulletin 1664863 Vulnerabilities in multiple VMware products for CloudBurst
Source: CCN Type: BID-64075 Multiple VMware Products CVE-2013-3519 Local Privilege Escalation Vulnerability
Source: CCN Type: VMSA-2013-0014 VMware Workstation, Fusion, ESXi and ESX patches address a guest privilege escalation
Source: CONFIRM Type: Vendor Advisory http://www.vmware.com/security/advisories/VMSA-2013-0014.html
Source: XF Type: UNKNOWN vmware-cve20133519-priv-esc(89416)
|
| Vulnerable Configuration: | Configuration 1: cpe:/o:vmware:esxi:4.0:*:*:*:*:*:*:*OR cpe:/o:vmware:esxi:4.1:*:*:*:*:*:*:*OR cpe:/o:vmware:esxi:5.0:*:*:*:*:*:*:*OR cpe:/o:vmware:esxi:5.1:*:*:*:*:*:*:* Configuration 2: cpe:/a:vmware:workstation:9.0:*:*:*:*:*:*:*OR cpe:/a:vmware:workstation:9.0.1:*:*:*:*:*:*:*OR cpe:/a:vmware:workstation:9.0.2:*:*:*:*:*:*:* Configuration 3: cpe:/o:vmware:esx:4.0:*:*:*:*:*:*:*OR cpe:/o:vmware:esx:4.1:*:*:*:*:*:*:* Configuration 4: cpe:/a:vmware:player:5.0:*:*:*:*:*:*:*OR cpe:/a:vmware:player:5.0.1:*:*:*:*:*:*:*OR cpe:/a:vmware:player:5.0.2:*:*:*:*:*:*:* Configuration 5: cpe:/a:vmware:fusion:5.0:*:*:*:*:*:*:*OR cpe:/a:vmware:fusion:5.0.1:*:*:*:*:*:*:*OR cpe:/a:vmware:fusion:5.0.2:*:*:*:*:*:*:*OR cpe:/a:vmware:fusion:5.0.3:*:*:*:*:*:*:* Configuration CCN 1: cpe:/a:vmware:esx_server:4.0:*:*:*:*:*:*:*OR cpe:/a:vmware:esxi:4.0:*:*:*:*:*:*:*OR cpe:/a:vmware:esxi:4.1:*:*:*:*:*:*:*OR cpe:/o:vmware:esxi:5.0:*:*:*:*:*:*:*OR cpe:/a:vmware:player:5.0:*:*:*:*:*:*:*OR cpe:/a:vmware:workstation:9.0:*:*:*:*:*:*:*OR cpe:/a:vmware:fusion:5.0:*:*:*:*:*:*:*
Denotes that component is vulnerable |
| Oval Definitions |
| Definition ID | Class | Title | Last Modified |
|---|
| oval:org.mitre.oval:def:20448 | V | VMware Workstation, Fusion, ESXi and ESX patches address a guest privilege escalation | 2014-01-20 |
|
| BACK |