Critical VMware bug lets attackers zap 'real' Windows

By Gregg Keizer
Excerpt:
“The bug was reported by Core Security Technologies, makers of the penetration-testing framework CORE IMPACT, said VMware in a security alert issued last Friday. ‘Exploitation of this vulnerability allows attackers to break out of an isolated guest system to compromise the underlying host system that controls it,’ claimed Core Security.”
Source: Computerworld











