CVE-2012-5458: VMware Player
High severity, CVSS 8.3. EPSS: 0.7% chance of exploitation in the next 30 days.
VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a crafted application.
Affected products
- VMware Player: version 4.0 only; version 4.0.0.18997 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only
- VMware Workstation: version 8.0 only; version 8.0.0.18997 only; version 8.0.1 only; version 8.0.1.27038 only; version 8.0.2 only; version 8.0.3 only; …
Published 2012-11-14. Last modified 2026-06-16.