CVE-2016-2077: Critical severity microsoft windows vulnerability
Published May 18, 2016
·Updated
VMware Workstation 11.x before 11.1.3 and VMware Player 7.x before 7.1.3 on Windows incorrectly access an executable file, which allows host OS users to gain host OS privileges via unspecified vectors.
Affected Software
9 affected components
Microsoft Windows
VMware Player=7.0
VMware Player=7.1
VMware Player=7.1.1
VMware Player=7.1.2
VMware Workstation=11.0
VMware Workstation=11.1
VMware Workstation=11.1.1
VMware Workstation=11.1.2
Event History
May 18, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2077?
CVE-2016-2077 is classified as a high severity vulnerability due to the potential for host OS privilege escalation.
2
How do I fix CVE-2016-2077?
To fix CVE-2016-2077, upgrade VMware Workstation to version 11.1.3 or later and VMware Player to version 7.1.3 or later.
3
Which versions are affected by CVE-2016-2077?
CVE-2016-2077 affects VMware Workstation versions prior to 11.1.3 and VMware Player versions prior to 7.1.3.
4
What does CVE-2016-2077 allow an attacker to do?
CVE-2016-2077 allows a host OS user to gain host OS privileges through unspecified vectors.
5
Is CVE-2016-2077 specific to any operating system?
Yes, CVE-2016-2077 specifically affects VMware products running on Microsoft Windows.