#VU14413 Out-of-bounds write in VMware Workstation and VMware Fusion - CVE-2018-6973
Published: August 14, 2018 / Updated: August 15, 2018
VMware Workstation
VMware Fusion
VMware, Inc
Description
The vulnerability allows an adjacent attacker to execute arbitrary code on the target system.
The vulnerability exists due to out-of-bounds write in the e1000 device. An adjacent attacker can trigger memory corruption and execute arbitrary code withe elevated privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Remediation
Update Fusion to version 10.1.3.