VYPR
Unrated severityNVD Advisory· Published Sep 21, 2007· Updated Apr 23, 2026

CVE-2007-0063

CVE-2007-0063

Description

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.

Affected products

13
  • cpe:2.3:a:vmware:ace:*:*:*:*:*:*:*:*
    Range: >=1.0,<1.0.3
  • cpe:2.3:a:vmware:player:*:*:*:*:*:*:*:*
    Range: >=1.0,<1.0.5
  • cpe:2.3:a:vmware:server:*:*:*:*:*:*:*:*
    Range: >=1.0,<1.0.4
  • cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*
    Range: >=5.5,<5.5.5
  • cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:*+ 2 more
    • cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:6.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:7.04:*:*:*:*:*:*:*
  • VMware/Esx6 versions
    cpe:2.3:o:vmware:esx:2.0.2:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:vmware:esx:2.0.2:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:2.1.3:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:2.5.3:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:2.5.4:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:3.0.0:*:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esx:3.0.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

18

News mentions

0

No linked articles in our index yet.