First published: Fri Jan 17 2014(Updated: )
VMware ESXi 4.0 through 5.1 and ESX 4.0 and 4.1 allow remote attackers to cause a denial of service (NULL pointer dereference) by intercepting and modifying Network File Copy (NFC) traffic.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware ESXi | =4.0 | |
VMware ESXi | =4.0-1 | |
VMware ESXi | =4.0-2 | |
VMware ESXi | =4.0-3 | |
VMware ESXi | =4.0-4 | |
VMware ESXi | =4.1 | |
VMware ESXi | =4.1-1 | |
VMware ESXi | =4.1-2 | |
VMware ESXi | =5.0 | |
VMware ESXi | =5.0-1 | |
VMware ESXi | =5.0-2 | |
VMware ESXi | =5.1 | |
VMware ESX | =4.0 | |
VMware ESX | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1207 has a severity level classified as high due to its potential to cause a denial of service.
To fix CVE-2014-1207, it is recommended to upgrade VMware ESXi and ESX to the latest versions that include security patches.
CVE-2014-1207 affects VMware ESXi versions 4.0 to 5.1 and VMware ESX versions 4.0 and 4.1.
CVE-2014-1207 enables remote attackers to cause a denial of service through intercepting and modifying Network File Copy (NFC) traffic.
There are no specific workarounds for CVE-2014-1207, so applying security updates is essential.