Learn about CVE-2017-4913, an integer-overflow vulnerability in VMware Workstation & Horizon View Client, enabling code execution or DoS attacks on Windows systems. Find mitigation steps and patching details.
VMware Workstation and Horizon View Client contain an integer-overflow vulnerability that could allow code execution or Denial of Service attacks on Windows systems.
Understanding CVE-2017-4913
This CVE involves an integer-overflow vulnerability in the True Type Font parser in TPView.dll within VMware Workstation and Horizon View Client.
What is CVE-2017-4913?
The True Type Font parser in VMware Workstation and Horizon View Client contains a vulnerability related to integer-overflow, potentially enabling code execution or Denial of Service on Windows OS.
The Impact of CVE-2017-4913
Exploitation is possible if virtual printing is enabled, allowing guests to execute code or cause a Denial of Service on the Windows OS where Workstation is running.
Technical Details of CVE-2017-4913
This section provides detailed technical information about the vulnerability.
Vulnerability Description
The vulnerability is an integer-overflow issue via Cortado ThinPrint in VMware Workstation and Horizon View Client.
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Protect your systems from CVE-2017-4913 with these mitigation strategies.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates