CVE-2014-8370: VMware ESXi
Medium severity, CVSS 6.4. EPSS: 4.2% chance of exploitation in the next 30 days.
VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allow host OS users to gain host OS privileges or cause a denial of service (arbitrary write to a file) by modifying a configuration file.
Affected products
- VMware ESXi: version 5.0 only; version 5.1 only; version 5.5 only
- VMware Fusion: version 6.0 only; version 6.0.1 only; version 6.0.2 only; version 6.0.3 only; version 6.0.4 only
- VMware Player: version 6.0 only; version 6.0.1 only; version 6.0.2 only; version 6.0.3 only; version 6.0.4 only
- VMware Workstation: version 10.0 only; version 10.0.1 only; version 10.0.2 only; version 10.0.3 only; version 10.0.4 only
Published 2015-01-29. Last modified 2026-06-17.