CVE-2009-2267 describes a privilege escalation vulnerability affecting multiple VMware products, including Workstation, Player, ACE, Server, Fusion, ESXi, and ESX. The flaw, occurring when Virtual-8086 mode is used, allows a guest OS user to gain privileges on the guest operating system by manipulating the cs register during a page fault exception. Rated with a CVSS score of 6.9 (Medium), this vulnerability has a local attack vector and medium attack complexity, leading to potential complete compromise of confidentiality, integrity, and availability within the guest OS. While not on CISA's KEV catalog, an ExploitDB entry (EDB-10207) exists for a Linux local ring0 exploit, indicating public exploit code availability, though there is no evidence of active exploitation, Metasploit modules, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.5.0CPE matchmatch criteria | cpe:2.3:a:vmware:ace:2.5.0:*:*:*:*:*:*:* | ||
2.5.1CPE matchmatch criteria | cpe:2.3:a:vmware:ace:2.5.1:*:*:*:*:*:*:* | ||
2.5.2CPE matchmatch criteria | cpe:2.3:a:vmware:ace:2.5.2:*:*:*:*:*:*:* | ||
2.5.5CPE matchmatch criteria | cpe:2.3:a:vmware:esx:2.5.5:*:*:*:*:*:*:* | ||
3.0.3CPE matchmatch criteria | cpe:2.3:a:vmware:esx:3.0.3:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:M/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.