Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-22247

Опубликовано: 12 мая 2025
Источник: debian
EPSS Низкий

Описание

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
open-vm-toolsfixed2:12.5.0-2package

Примечания

  • https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25683

  • Patches: https://github.com/vmware/open-vm-tools/tree/CVE-2025-22247.patch

  • https://www.openwall.com/lists/oss-security/2025/05/12/2

EPSS

Процентиль: 16%
0.00052
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
6 месяцев назад

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.

CVSS3: 6.1
redhat
6 месяцев назад

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.

CVSS3: 6.1
nvd
6 месяцев назад

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.

CVSS3: 6.1
msrc
около 2 месяцев назад

Insecure file handling vulnerability

suse-cvrf
6 месяцев назад

Security update for open-vm-tools

EPSS

Процентиль: 16%
0.00052
Низкий