CVE-2009-4811: Medium severity VMware Player vulnerability
VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in VMware Workstation 7.0 before 7.0.1 build 227600 and 6.5.x before 6.5.4 build 246459, VMware Player 3.0 before 3.0.1 build 227600 and 2.5.x before 2.5.4 build 246459, VMware ACE 2.6 before 2.6.1 build 227600 and 2.5.x before 2.5.4 build 246459, and VMware Server 2.x allows remote attackers to cause a denial of service (process crash) via a \x25\x90 sequence in the USER and PASS commands, a related issue to CVE-2009-3707. NOTE: some of these details are obtained from third party information.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-4811?
CVE-2009-4811 is classified as a high severity vulnerability due to the potential for remote denial of service.
How do I fix CVE-2009-4811?
To mitigate CVE-2009-4811, upgrade to VMware Workstation version 7.0.1 or later, or VMware Player version 3.0.1 or later.
What software is affected by CVE-2009-4811?
CVE-2009-4811 affects VMware Workstation, VMware Player, VMware ACE, and VMware Server in certain versions.
What type of vulnerability is CVE-2009-4811?
CVE-2009-4811 is a remote denial of service vulnerability impacting VMware's authentication daemon.
When was CVE-2009-4811 disclosed?
CVE-2009-4811 was publicly disclosed in 2009.