FTP.Command.EPRT.Buffer.Overflow

description-logoDescription

This indicates an attempt to exploit a heap-based buffer overflow vulnerability in multiple VMWare products.
The vulnerability is caused by a failure of the application to properly check user-supplied data. It may allow a remote attacker to execute arbitrary code via specially crafted EPRT or PORT FTP command.

affected-products-logoAffected Products

VMWare VMWare Workstation 5.0 .0 build-13124
VMWare VMWare Workstation 4.5.2
VMWare VMWare Workstation 4.0.2
VMWare VMWare Workstation 4.0.1
VMWare VMWare Workstation 4.0
VMWare VMWare Workstation 3.4
VMWare VMWare Workstation 3.2.1 patch 1
VMWare Player
VMWare GSX Server 3.1
VMWare GSX Server 3.0 build 7592
VMWare GSX Server 3.0
VMWare GSX Server 2.5.2
VMWare GSX Server 2.5.1 build 5336
VMWare GSX Server 2.5.1
VMWare GSX Server 2.0.1 build 2129
VMWare GSX Server 2.0
VMWare ACE 1.0

Impact logoImpact

Arbitrary code execution

recomended-action-logoRecommended Actions

The vendor has released upgrades to address this issue. Please contact the vendor to obtain upgrades.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)