CVE-2008-3761

VMware Workstation 6.5.1 - Denial of Service via IOCTL Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-3761. PoCs published by g_.

AI-analyzed exploit summary This exploit demonstrates a denial-of-service (DoS) vulnerability in VMWare Workstation's hcmon.sys driver by sending a malformed IOCTL request (0x8101232B) to the \\.\hcmon device, causing a bugcheck due to unsanitized pointer dereferencing.

Description

hcmon.sys in VMware Workstation 6.5.1 and earlier, VMware Player 2.5.1 and earlier, VMware ACE 2.5.1 and earlier, and VMware Server 1.0.x before 1.0.9 build 156507 and 2.0.x before 2.0.1 build 156745 uses the METHOD_NEITHER communication method for IOCTLs, which allows local users to cause a denial of service via a crafted IOCTL request.

Exploits (1)

exploitdb WORKING POC VERIFIED
by g_ · textdoswindows
https://www.exploit-db.com/exploits/6262

This exploit demonstrates a denial-of-service (DoS) vulnerability in VMWare Workstation's hcmon.sys driver by sending a malformed IOCTL request (0x8101232B) to the \\.\hcmon device, causing a bugcheck due to unsanitized pointer dereferencing.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: VMWare Workstation (hcmon.sys 6.0.0.45731)
No auth needed
Prerequisites: Access to the target system to send IOCTL requests to the hcmon device
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (11)

Core 11
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/44539
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/4177
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2009/Apr/0036.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/30737
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34373
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1020715
Various Sources x_refsource_misc
http://www.orange-bat.com/adv/2008/adv.08.17.txt
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/0944
Various Sources mailing-list x_refsource_mlist
http://lists.vmware.com/pipermail/security-announce/2009/000054.html
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/6262

Scores

EPSS 0.0100
EPSS Percentile 58.3%

Details

CWE
CWE-20
Status published
Products (1)
vmware/vmware_workstation 6.0.0.45731
Published Aug 21, 2008
Tracked Since Feb 18, 2026