CVE-2019-5515: VMware Workstation e1000 Out-Of-Bounds Write Privilege Escalation Vulnerability
This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of VMware Workstation. An attacker must first obtain the ability to execute low-privileged code on the guest system in order to exploit this vulnerability. The specific flaw exists within the handling of virtualized e1000 devices. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the host OS.
Other sources
This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of VMware Workstation. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the e1000 driver. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the hypervisor.
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) and Fusion (11.x before 11.0.3, 10.x before 10.1.6) updates address an out-of-bounds write vulnerability in the e1000 and e1000e virtual network adapters. Exploitation of this issue may lead to code execution on the host from the guest but it is more likely to result in a denial of service of the guest.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2019-5515.
What is the title of the vulnerability?
The title of the vulnerability is VMware Workstation e1000 Memory Corruption Privilege Escalation Vulnerability.
What is the severity of CVE-2019-5515?
The severity of CVE-2019-5515 is critical with a score of 8.8.
Which software products are affected by CVE-2019-5515?
VMware Workstation versions 14.0.0 to 14.1.6 and 15.0.0 to 15.0.3, as well as VMware Fusion versions 10.0.0 to 10.1.6 and 11.0.0 to 11.0.3 are affected.
How can an attacker exploit CVE-2019-5515?
In order to exploit CVE-2019-5515, an attacker must first obtain the ability to execute low-privileged code on the guest system.