Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2010-1138

EPSS 0.77% · P74
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2010-1138

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The virtual networking stack in VMware Workstation 7.0 before 7.0.1 build 227600, VMware Workstation 6.5.x before 6.5.4 build 246459 on Windows, VMware Player 3.0 before 3.0.1 build 227600, VMware Player 2.5.x before 2.5.4 build 246459 on Windows, VMware ACE 2.6 before 2.6.1 build 227600 and 2.5.x before 2.5.4 build 246459, VMware Server 2.x, and VMware Fusion 3.0 before 3.0.1 build 232708 and 2.x before 2.0.7 build 246742 allows remote attackers to obtain sensitive information from memory on the host OS by examining received network packets, related to interaction between the guest OS and the host vmware-vmx process.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
VMware 虚拟网络堆栈远程攻击敏感信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
VMWare是一款虚拟PC软件,允许在一台机器上同时运行两个或多个Windows、DOS、LINUX系统。 Vmware工作站、Vmware播放器、Vmware ACE、 Vmware服务器以及Vmware Fusion的虚拟网络堆栈远程攻击者通过查看收到的网络包从主机操作系统内存中获取敏感信息。与子操作系统和主操作系统的vmware-vmx进程交互相关。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2010-1138

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-1138

登录查看更多情报信息。

Same Patch Batch · n/a · 2010-04-12 · 21 CVEs total

CVE-2010-1152memcached 输入验证错误漏洞
CVE-2010-1348IBM WebSphere Portal登录程序未明漏洞
CVE-2010-1347IBM Systems Director Agent 不安全文件权限管理漏洞
CVE-2010-1148Linux Kernel cifs_create()函数空指针引用漏洞
CVE-2010-1354Joomla! 'VJDEO'组件目录遍历漏洞
CVE-2010-1353JWowjoomla 'LoginBox Pro'组件目录遍历漏洞
CVE-2010-1352JOOFORGE Jutebox组件目录遍历漏洞
CVE-2010-1351Nodesform多个PHP远程文件包含漏洞
CVE-2010-1350Joomla! 'com_jp_jobs'组件'id'参数SQL注入漏洞
CVE-2010-1349Opera Web浏览器Content-Length堆溢出漏洞
CVE-2009-1564VMware VMnc编解码器HexTile编码视频块解析堆溢出漏洞
CVE-2010-1149Freedesktop udisks 'probers/udisks-dm-export.c' 本地信息泄露漏洞
CVE-2010-1146Linux Kernel ReiserFS文件系统实现绕过安全限制漏洞
CVE-2010-1142VMware VMnc编解码器HexTile编码视频块解析堆溢出漏洞
CVE-2010-1141VMware VMnc编解码器HexTile编码视频块解析堆溢出漏洞
CVE-2010-1140VMware USB服务 特洛伊木马权限获取漏洞
CVE-2010-1139VMware vmrun格式化字符串漏洞
CVE-2010-0741Linux kernel 输入验证错误漏洞
CVE-2009-3732VMware Remote Console vmware-vmrc.exe 格式化字符串漏洞
CVE-2009-1565VMware VMnc HexTile编码视频块多个堆溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2010-1138

No comments yet


Leave a comment