First published: Wed Aug 29 2007(Updated: )
vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) and possibly gain privileges by sending a small file buffer size value to the FsSetVolumeInformation IOCTL handler with an FsSetFileInformation subcode.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workstation | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-4591 is considered high due to its potential to cause a denial of service and possible privilege escalation.
Mitigation for CVE-2007-4591 involves updating VMware Workstation to a version that is not affected by this vulnerability.
CVE-2007-4591 can be exploited by local users who send a malformed file buffer to the FsSetVolumeInformation IOCTL handler.
Yes, CVE-2007-4591 specifically affects VMware Workstation version 6.0.
The impact of CVE-2007-4591 can range from system crashes to unauthorized privilege escalation on the host operating system.