CVE-2007-0063: Integer Underflow
Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0063?
CVE-2007-0063 has a medium severity rating due to its potential to allow unauthorized access to network resources.
How do I fix CVE-2007-0063?
To fix CVE-2007-0063, upgrade VMware Workstation, Player, ACE, or Server to the patched versions specified in the security advisories.
Which VMware products are affected by CVE-2007-0063?
CVE-2007-0063 affects various versions of VMware Workstation, Player, ACE, Server, and certain versions of VMware ESX.
What type of vulnerability is CVE-2007-0063?
CVE-2007-0063 is classified as an integer underflow vulnerability impacting the DHCP server functionality.
Is there a workaround for CVE-2007-0063?
While the primary solution for CVE-2007-0063 is to apply updates, temporarily disabling DHCP services may serve as a workaround.