Описание
An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mounting shares via a symlink attack that leverages a realpath race condition in mount.vmhgfs (aka hgfsmounter).
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | |
devel | not-affected | code not present |
esm-infra-legacy/trusty | ignored | |
esm-infra/bionic | ignored | |
esm-infra/focal | ignored | |
esm-infra/xenial | ignored | |
focal | ignored | |
jammy | not-affected | code not present |
kinetic | not-affected | code not present |
trusty | ignored | end of standard support |
Показывать по
EPSS
7 High
CVSS3
Связанные уязвимости
An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mounting shares via a symlink attack that leverages a realpath race condition in mount.vmhgfs (aka hgfsmounter).
An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mounting shares via a symlink attack that leverages a realpath race condition in mount.vmhgfs (aka hgfsmounter).
An issue was discovered in open-vm-tools 2009.03.18-154848. Local user ...
An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mounting shares via a symlink attack that leverages a realpath race condition in mount.vmhgfs (aka hgfsmounter).
Уязвимость компонента mount.vmhgfs набора модулей для продуктов VMware Open-vm-tools, связанная с неверным определением символических ссылок перед доступом к файлу, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
EPSS
7 High
CVSS3