CVE-2017-4903: Buffer Overflow
VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x prior to 12.5.5; and Fusion Pro / Fusion 8.x prior to 8.5.6 have an uninitialized stack memory usage in SVGA. This issue may allow a guest to execute code on the host.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-4903?
CVE-2017-4903 has a severity rating that can be classified as high due to the potential for remote code execution.
How do I fix CVE-2017-4903?
To fix CVE-2017-4903, ensure that you apply the relevant patches for VMware ESXi, Workstation Pro, Player, or Fusion as specified by VMware.
What vulnerabilities are associated with CVE-2017-4903?
CVE-2017-4903 is associated with vulnerabilities related to unpatched versions of VMware ESXi and other VMware products.
Which VMware products are affected by CVE-2017-4903?
CVE-2017-4903 affects VMware ESXi 5.5, 6.0, and 6.5 as well as VMware Workstation Pro/Player and Fusion before specific versions.
What are the potential consequences of exploiting CVE-2017-4903?
Exploiting CVE-2017-4903 could allow an attacker to execute arbitrary code on the affected host, leading to potential data breaches or system compromise.