CVE-2017-4950
Description
VMware Workstation and Fusion contain an integer overflow vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may lead to an out-of-bound read which can then be used to execute code on the host in conjunction with other issues. Note: IPv6 mode for VMNAT is not enabled by default.
- CVSS Version 3.0
- CVSS Version 2.0
nvd
CVE ID: CVE-2017-4950
Base Score: 7.0
Base Severity: HIGH
Vector String:CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd
CVE ID: CVE-2017-4950
Base Score: 6.9
Base Severity: MEDIUM
Vector String:AV:L/AC:M/Au:N/C:C/I:C/A:C
Refrence: NVD