CVE-2008-1340

N/A Unknown
Published: March 20, 2008 Modified: April 23, 2026
View on NVD

Description

Virtual Machine Communication Interface (VMCI) in VMware Workstation 6.0.x before 6.0.3, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x before 2.0.1 allows attackers to cause a denial of service (host OS crash) via crafted VMCI calls that trigger "memory exhaustion and memory corruption."

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.securityfocus.com/bid/28276
Source: cve@mitre.org
Patch
http://lists.vmware.com/pipermail/security-announce/2008/000008.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://security.gentoo.org/glsa/glsa-201209-25.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://securityreason.com/securityalert/3755
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1019624
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/489739/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/28276
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.securityfocus.com/bid/28289
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vmware.com/security/advisories/VMSA-2008-0005.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.vmware.com/support/player2/doc/releasenotes_player2.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://www.vupen.com/english/advisories/2008/0905/references
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/41250
Source: af854a3a-2127-422b-91ae-364da2661108

26 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
1.7%
75th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

vmware