CVE-2007-0063

CRITICAL

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE ...

Affects 6 products across 2 vendors.

BCS7.84
CVSS 2.010.0
EPSS20.4%
Percentile97th
PatchPatched
CVSS Vector — Plain English Remotely exploitable over the network, low complexity.
CWE Weakness Definitions
CWE-191: CWE-191
◆ SAGE Intelligence — CITED Relevance Research Team

This vulnerability was disclosed in 2007. A critical vulnerability affects Canonical systems (CVE-2007-0063). No public exploit code is currently available. Isolate affected systems if patching is not feasible.

BSID: BS-2007-GLOBAL-016612-C • Model: rule-based-v1 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2007-0063?
This vulnerability was disclosed in 2007. A critical vulnerability affects Canonical systems (CVE-2007-0063). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
What is the CVSS score for CVE-2007-0063?
CVE-2007-0063 has CVSS 10.0 (Critical). Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C. EPSS: 20.4%.
Is CVE-2007-0063 actively exploited?
No confirmed active exploitation of CVE-2007-0063 as of 2026-05-30.
How do I remediate CVE-2007-0063?
Priority: MEDIUM. Advisory: http://www.iss.net/threats/275.html PSIRT: [email protected]
What systems are affected by CVE-2007-0063?
CVE-2007-0063 affects: Canonical, Vmware, Vmware, Vmware, Vmware, Vmware.
Vulnerability Details
CVE IDCVE-2007-0063
BSIDBS-2007-GLOBAL-016612-C BreachSpider Global ID
CVSS VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Published2007-09-21
Last Modified2026-04-23
ICS Relevance0%
Weakness (CWE)
Domains
CLOUD
SourceNVD
Official Description

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Vulnerability details: Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 55017, and Server before 1.0.4 Build 56528 allows remote attackers to execute arbitrary code via a malformed DHCP packet that triggers a stack-based buffer overflow. CVSS vector: AV:N/AC:L/Au:N/C:C/I:C/A:C.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Canonical Ubuntu Linux
Vmware Workstation
Vmware Esx
Vmware Ace
Vmware Player
Vmware Server
Remediation
View Vendor Advisory →

Remediation Priority: MEDIUM

Vendor PSIRT: [email protected]
Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 6891 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Modelrule-based-v1
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hashf861a1af2e39d38bc211b5d8da37e86a2e30c5e71f1adf222f8edf384b30aaf8147d7b1d205eff59aecf1285169a1503e167e6f33b3e8dd94783753ce7a45ad7
Related CVEs affecting Canonical
CVE-2004-1018 10.0 Multiple integer handling errors in PHP before 4.3.10 allow attackers to bypa... CVE-2014-0457 10.0 Unspecified vulnerability in Oracle Java SE 5.0u61, SE 6u71, 7u51, and 8; JRo... CVE-2004-1063 10.0 PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multit... CVE-2008-2663 10.0 Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and ear... CVE-2008-4062 10.0 Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3...
View all Canonical CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →