← All CVEs

CVE-2007-0063

high · 10

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.

10
CVSS
20.4%
EPSS (exploit prob.)
97th
EPSS percentile
2007-09-21
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-191

Affected products

VendorProductAffected versions
vmwareace>= 1.0, < 1.0.3
vmwareace>= 2.0, < 2.0.1
vmwareplayer>= 1.0, < 1.0.5
vmwareplayer>= 2.0, < 2.0.1
vmwareserver>= 1.0, < 1.0.4
vmwareworkstation>= 5.5, < 5.5.5
vmwareworkstation>= 6.0, < 6.0.1
vmwareesx2.0.2
vmwareesx2.1.3
vmwareesx2.5.3
vmwareesx2.5.4
vmwareesx3.0.0
vmwareesx3.0.1
canonicalubuntu_linux6.06
canonicalubuntu_linux6.10
canonicalubuntu_linux7.04

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-0063