Just reached home from work and got the news. He passed away this morning. I feel weird.
vulnerable software: VMware Workstation 6.0 for Windows, possible some other VMware products as well type of vulnerability: DoS, potential privilege escalation I found a vulnerability in VMware Workstation 6.0 which allows an unprivileged user in the host OS to crash the system and potentially run arbitrary code with kernel privileges. The issue is in the vmstor-60 driver, which is supposed to mount VMware images within the host OS. When sending the IOCTL code FsSetVoleInformation with subcode FsSetFileInformation with a large buffer and underreporting its size to at max 1024 bytes, it will underrun and potentially execute arbitrary code. Security focus
It is hard when we lose a loved one, and no less painful when it is a friend. When those we know and love die, we are forced to look into the face of our own mortality, and that is something our egos were not built for.
ReplyDeleteMy thoughts and prayers are with you on this sad occassion.
Bill,
ReplyDeleteThanks for your kind words. I really appreciate it. Although I still can't comprehend it at all but I guess somewhere along the passage of our own lives we'll come around to accept the cruel reality of life and death.