CVE-2014-8370: Medium severity vmware player vulnerability
VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allow host OS users to gain host OS privileges or cause a denial of service (arbitrary write to a file) by modifying a configuration file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8370?
CVE-2014-8370 is considered a high severity vulnerability allowing host OS users to gain privileges or cause a denial of service.
How do I fix CVE-2014-8370?
To fix CVE-2014-8370, upgrade to the patched versions of VMware Workstation, Fusion, Player, or ESXi as specified in VMware's advisory.
What software is affected by CVE-2014-8370?
CVE-2014-8370 affects VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi versions 5.0 through 5.5.
Can CVE-2014-8370 lead to data breach?
Yes, CVE-2014-8370 can potentially lead to data breaches due to unauthorized host OS privilege escalation.
Is there a workaround for CVE-2014-8370?
There are no specific workarounds for CVE-2014-8370; upgrading to the latest version is the recommended remediation.