CVE-2013-1662
vmware-mount in VMware Workstation 8.x and 9.x and VMware Player 4.x and 5.x, on systems based on Debian GNU/Linux, allows host OS users to gain host OS privileges via a crafted lsb_release binary in a directory in the PATH, related to use of the popen library function.
- Affected products
- Debian, Vmware Player, Vmware Workstation
- Vmware Workstation
- = 8.0, 8.0.0.18997, 8.0.1, 8.0.1.27038, 8.0.2, 8.0.3, 8.0.4, 8.0.5, 8.0.6, 9.0, 9.0.1, 9.0.2
- Fix
- Available
- CVSS 2.0
- 6.9 MEDIUM
- EPSS
- 4.6% (91th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2013-08-24
CVE-2013-1662 at NVD
5 known exploits for CVE-2013-1662
Proof-of-concept code and exploit modules indexed by Sploitus