Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4vr2-36wr-v82r

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

EPSS

Процентиль: 20%
0.00066
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 8 лет назад

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

redhat
больше 8 лет назад

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CVSS3: 6.7
nvd
больше 8 лет назад

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CVSS3: 6.7
debian
больше 8 лет назад

VMware Tools prior to 10.0.9 contains multiple file system races in li ...

suse-cvrf
почти 9 лет назад

Security update for open-vm-tools

EPSS

Процентиль: 20%
0.00066
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-362