Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2023:3949

Опубликовано: 08 июл. 2023
Источник: rocky
Оценка: Low

Описание

Low: open-vm-tools security update

The Open Virtual Machine Tools are the open source implementation of the VMware Tools. They are a set of guest operating system virtualization components that enhance performance and user experience of virtual machines.

Security Fix(es):

  • open-vm-tools: authentication bypass vulnerability in the vgauth module (CVE-2023-20867)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
open-vm-toolsx86_642.el8_8open-vm-tools-12.1.5-2.el8_8.x86_64.rpm
open-vm-tools-desktopx86_642.el8_8open-vm-tools-desktop-12.1.5-2.el8_8.x86_64.rpm
open-vm-tools-salt-minionx86_642.el8_8open-vm-tools-salt-minion-12.1.5-2.el8_8.x86_64.rpm
open-vm-tools-sdmpx86_642.el8_8open-vm-tools-sdmp-12.1.5-2.el8_8.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 3.9
ubuntu
около 2 лет назад

A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

CVSS3: 3.9
redhat
около 2 лет назад

A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

CVSS3: 3.9
nvd
около 2 лет назад

A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

CVSS3: 3.9
debian
около 2 лет назад

A fully compromised ESXi host can force VMware Tools to fail to authen ...

suse-cvrf
почти 2 года назад

Security update for open-vm-tools