Medium severity6.5NVD Advisory· Published May 22, 2017· Updated May 13, 2026
CVE-2017-4916
CVE-2017-4916
Description
VMware Workstation Pro/Player contains a NULL pointer dereference vulnerability that exists in the vstor2 driver. Successful exploitation of this issue may allow host users with normal user privileges to trigger a denial-of-service in a Windows host machine.
Affected products
3- cpe:2.3:a:vmware:workstation_player:12.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:vmware:workstation_pro:12.0.0:*:*:*:*:*:*:*
- VMware/Workstation Pro/Playerv5Range: All 12.x versions prior to version 12.5.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.vmware.com/security/advisories/VMSA-2017-0009.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/98560nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1038526nvd
- www.exploit-db.com/exploits/42140/nvd
News mentions
0No linked articles in our index yet.