CVE-2008-3695: Critical severity vmware ace vulnerability
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server before 1.0.7 build 108231 has unknown impact and remote attack vectors, a different vulnerability than CVE-2008-3691, CVE-2008-3692, CVE-2008-3693, CVE-2008-3694, and CVE-2008-3696.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3695?
CVE-2008-3695 is classified as a moderate severity vulnerability due to its potential exploitation via ActiveX controls.
How do I fix CVE-2008-3695?
To fix CVE-2008-3695, upgrade VMware Workstation, Player, or ACE to versions 5.5.8, 6.0.5, 1.0.8, or 2.0.5 or later.
What products are affected by CVE-2008-3695?
CVE-2008-3695 affects VMware Workstation versions below 5.5.8, VMware Player versions below 1.0.8, and VMware ACE versions below 1.0.7.
Can CVE-2008-3695 lead to remote code execution?
Yes, CVE-2008-3695 can potentially lead to remote code execution if exploited by an attacker.
Is there a workaround for CVE-2008-3695?
There are no specific workarounds for CVE-2008-3695; the recommended action is to update to the latest software versions.