Get a Pentest and security assessment of your IT network.

Cyber Security

VMware Patches Bug That Allows Guest to Execute Code on Host

The most serious issue, an out-of-bounds write vulnerability, exists in ESXi, and desktop hypervisors Workstation, and Fusion. An attacker could exploit the issue, which exists in a SVGA device, to execute code on the host. A NULL pointer dereference vulnerability can also be exploited when the software handles guest RPC requests, something that could allow an attacker with normal user privileges to crash virtual machines. The last vulnerability only affects vCenter Server, a platform designed to help users manage vSphere environments.

Source: https://threatpost.com/vmware-patches-bug-that-allows-guest-to-execute-code-on-host/127990/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security