VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest virtual machine may elevate privileges within the virtual machine.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tools | Vmware | 10.3.0 (including) | 12.1.1 (excluding) |
Open-vm-tools | Ubuntu | bionic | * |
Open-vm-tools | Ubuntu | trusty | * |
Open-vm-tools | Ubuntu | xenial | * |