CVE-2017-4927: High severity vmware vcenter vulnerability
Published Nov 17, 2017
·Updated
VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c) does not correctly handle specially crafted LDAP network packets which may allow for remote denial of service.
Affected Software
2 affected components
VMware vCenter Server>=6.0<6.0_u3c
VMware vCenter Server>=6.5<6.5_u1
Event History
Nov 17, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-4927?
CVE-2017-4927 is a vulnerability that affects VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c).
2
What is the severity of CVE-2017-4927?
CVE-2017-4927 has a high severity with a CVSS score of 7.5.
3
What is the impact of CVE-2017-4927?
CVE-2017-4927 allows for remote denial of service.
4
How does CVE-2017-4927 affect VMware vCenter Server?
CVE-2017-4927 affects VMware vCenter Server versions 6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c.
5
Is there a fix available for CVE-2017-4927?
Yes, VMware has released a security advisory (VMSA-2017-0017) with information on how to mitigate the vulnerability.