
CVE-2007-1069
https://notcve.org/view.php?id=CVE-2007-1069
02 May 2007 — The memory management in VMware Workstation before 5.5.4 allows attackers to cause a denial of service (Windows virtual machine crash) by triggering certain general protection faults (GPF). La gestión de memoria en VMware Workstation anterior a 5.5.4 permite a atacantes remotos provocar denegación de servicio (caida de la maquina virtual de windows)a través del disparo de ciertas averías generales de protección (GPF). • http://osvdb.org/35507 •

CVE-2006-6410 – VMware 5.5.1 - 'ActiveX' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2006-6410
10 Dec 2006 — Buffer overflow in an ActiveX control in VMWare 5.5.1 allows local users to execute arbitrary code via a long VmdbDb parameter to the Initialize function. Desbordamiento de búfer en un control ActiveX en VMWare 5.5.1 permite a atacantes locales ejecutar código de su elección mediante un parámetro largo VmdbDb en la función Initialize. • https://www.exploit-db.com/exploits/2264 •

CVE-2006-3589
https://notcve.org/view.php?id=CVE-2006-3589
19 Jul 2006 — vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key. vmware-config.pl en VMware for Linux, ESX Server 2.x, y Infrastructure 3 no valida el código de retorno desde la llamada a la función Perl chmod, lo cual podría permitir un fichero llave SSL sea creado con una umask no segura que permite a usuarios ... • http://kb.vmware.com/kb/2467205 •

CVE-2005-4459
https://notcve.org/view.php?id=CVE-2005-4459
21 Dec 2005 — Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execute arbitrary code via crafted (1) EPRT and (2) PORT FTP commands. • http://lists.grok.org.uk/pipermail/full-disclosure/2005-December/040442.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2005-2939
https://notcve.org/view.php?id=CVE-2005-2939
18 Nov 2005 — Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder. • http://securitytracker.com/id?1015225 •

CVE-2005-0444
https://notcve.org/view.php?id=CVE-2005-0444
14 Feb 2005 — VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code. • http://security.gentoo.org/glsa/glsa-200502-18.xml •

CVE-2004-2515
https://notcve.org/view.php?id=CVE-2004-2515
31 Dec 2004 — Format string vulnerability in VMware Workstation 4.5.2 build-8848, if running with elevated privileges, might allow local users to execute arbitrary code via format string specifiers in command line arguments. NOTE: it is not clear if there are any default or typical circumstances under which VMware would be running with privileges beyond those already available to the attackers, so this might not be a vulnerability. • http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1320.html •

CVE-2003-0739
https://notcve.org/view.php?id=CVE-2003-0739
04 Sep 2003 — VMware Workstation 4.0.1 for Linux, build 5289 and earlier, allows local users to delete arbitrary files via a symlink attack. • http://marc.info/?l=bugtraq&m=106029217115023&w=2 •

CVE-2003-0631
https://notcve.org/view.php?id=CVE-2003-0631
02 Aug 2003 — VMware GSX Server 2.5.1 build 4968 and earlier, and Workstation 4.0 and earlier, allows local users to gain root privileges via certain enivronment variables that are used when launching a virtual machine session. VMware GSX Server 2.5.1 compilación 4968 y anteriores, y Workstation 4.0 y anteriores, permite a usuarios locales ganar privilegios de root mediante ciertas variables de entorno que son usadas cuando se lanza una sesión de máquina virtual. • http://marc.info/?l=bugtraq&m=105899875225268&w=2 •

CVE-2003-0480
https://notcve.org/view.php?id=CVE-2003-0480
28 Jun 2003 — VMware Workstation 4.0 for Linux allows local users to overwrite arbitrary files and gain privileges via "symlink manipulation." VMware Workstation 4.0 para Linux permite a usuarios locales sobreescribir ficheros arbitrarios y ganar privilegios mediante una manipulación de enlaces simbólicos. • http://marc.info/?l=bugtraq&m=105673688529147&w=2 •