open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Open_vm_tools | Vmware | 11.0.0 (including) | 12.3.0 (including) |
Red Hat Enterprise Linux 7 | RedHat | open-vm-tools-0:11.0.5-3.el7_9.9 | * |
Red Hat Enterprise Linux 8 | RedHat | open-vm-tools-0:12.2.5-3.el8_9.1 | * |
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | RedHat | open-vm-tools-0:10.3.10-3.el8_1.5 | * |
Red Hat Enterprise Linux 8.2 Advanced Update Support | RedHat | open-vm-tools-0:11.0.0-4.el8_2.4 | * |
Red Hat Enterprise Linux 8.2 Telecommunications Update Service | RedHat | open-vm-tools-0:11.0.0-4.el8_2.4 | * |
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions | RedHat | open-vm-tools-0:11.0.0-4.el8_2.4 | * |
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | open-vm-tools-0:11.2.0-2.el8_4.4 | * |
Red Hat Enterprise Linux 8.4 Telecommunications Update Service | RedHat | open-vm-tools-0:11.2.0-2.el8_4.4 | * |
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions | RedHat | open-vm-tools-0:11.2.0-2.el8_4.4 | * |
Red Hat Enterprise Linux 8.6 Extended Update Support | RedHat | open-vm-tools-0:11.3.5-1.el8_6.5 | * |
Red Hat Enterprise Linux 8.8 Extended Update Support | RedHat | open-vm-tools-0:12.1.5-2.el8_8.4 | * |
Red Hat Enterprise Linux 9 | RedHat | open-vm-tools-0:12.2.5-3.el9_3.2 | * |
Red Hat Enterprise Linux 9.0 Extended Update Support | RedHat | open-vm-tools-0:11.3.5-1.el9_0.5 | * |
Red Hat Enterprise Linux 9.2 Extended Update Support | RedHat | open-vm-tools-0:12.1.5-1.el9_2.4 | * |
Open-vm-tools | Ubuntu | bionic | * |
Open-vm-tools | Ubuntu | esm-infra/bionic | * |
Open-vm-tools | Ubuntu | esm-infra/xenial | * |
Open-vm-tools | Ubuntu | focal | * |
Open-vm-tools | Ubuntu | jammy | * |
Open-vm-tools | Ubuntu | lunar | * |
Open-vm-tools | Ubuntu | mantic | * |
Open-vm-tools | Ubuntu | trusty | * |
Open-vm-tools | Ubuntu | xenial | * |