Immunity, Inc.
Name CLOUDBURST
CVE CVE-2009-1244
Exploit Pack CANVAS
DescriptionCLOUDBURST VMware Workstation Guest Escape
NotesCVE Name: CVE-2009-1244
VENDOR: VMware
Notes: The exploit currently only supports a Windows Guest in a Windows Host, with "Accelerate 3D Graphics" enabled (default on new 6.5 VMs). mosdefd3d.exe will remain on the Guest until removed. The MOSDEF Over Direct3D tunnel requires the latest DirectX redistributable (March 2009 or later) to be installed on the Guest (d3dx9_40.dll must be present). Linux connect back will freeze the VM for it is not threaded.
Repeatability: One Shot
CVS URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1244
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1244
Date public: 04/10/2009
CVSS: 6.8

Learn more about the CANVAS Exploit Pack here: CANVAS