CVE-2016-7084
tpview.dll in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via a JPEG 2000 image.
- Affected products
- Vmware Workstation, Vmware Workstation Player
- Vmware Workstation Player
- = 12.0.0, 12.0.1, 12.1.0, 12.1.1
- Vmware Workstation Pro
- = 12.0.0, 12.0.1, 12.1.0, 12.1.1
- Fix
- Available
- CVSS 3.0
- 7.8 HIGH
- EPSS
- 1.5% (73th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2016-12-29
CVE-2016-7084 at NVD
2 known exploits for CVE-2016-7084
Proof-of-concept code and exploit modules indexed by Sploitus