Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:6358

Опубликовано: 06 сент. 2022
Источник: rocky
Оценка: Important

Описание

Important: open-vm-tools security update

The Open Virtual Machine Tools are the open source implementation of the VMware Tools. They are a set of guest operating system virtualization components that enhance performance and user experience of virtual machines.

Security Fix(es):

  • open-vm-tools: local root privilege escalation in the virtual machine (CVE-2022-31676)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
open-vm-toolsx86_641.el9_0.1open-vm-tools-11.3.5-1.el9_0.1.x86_64.rpm
open-vm-tools-desktopx86_641.el9_0.1open-vm-tools-desktop-11.3.5-1.el9_0.1.x86_64.rpm
open-vm-tools-sdmpx86_641.el9_0.1open-vm-tools-sdmp-11.3.5-1.el9_0.1.x86_64.rpm
open-vm-tools-testx86_641.el9_0.1open-vm-tools-test-11.3.5-1.el9_0.1.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

CVSS3: 7
redhat
больше 3 лет назад

VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

CVSS3: 7.8
nvd
больше 3 лет назад

VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

CVSS3: 7.8
debian
больше 3 лет назад

VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege es ...

suse-cvrf
больше 3 лет назад

Security update for open-vm-tools