CVE-2009-0177: Medium severity VMware ACE vulnerability
vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 build 126130, 6.5.1 and earlier; VMware Player 2.5.1 build 126130, 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 2.0.x before 2.0.1 build 156745; and VMware Fusion before 2.0.2 build 147997 allows remote attackers to cause a denial of service (daemon crash) via a long (1) USER or (2) PASS command.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0177?
The severity of CVE-2009-0177 is classified as critical due to potential remote code execution vulnerabilities.
How do I fix CVE-2009-0177?
To fix CVE-2009-0177, upgrade to a patched version of VMware Workstation, Player, ACE, Server, or Fusion as advised by VMware.
Which versions of VMware are impacted by CVE-2009-0177?
CVE-2009-0177 affects VMware Workstation versions 6.5.1 and earlier, VMware Player versions 2.5.1 and earlier, and several specific versions of VMware ACE and Server.
Is CVE-2009-0177 a widespread vulnerability?
Yes, CVE-2009-0177 is considered widespread as it affects multiple VMware products and versions used by many organizations.
What are the potential exploits for CVE-2009-0177?
CVE-2009-0177 can be exploited by attackers to execute arbitrary code on affected systems, potentially leading to unauthorized access and data breaches.