PT-2017-16199 · Vmware+1 · Vmware Workstation+2
Publicado
2017-05-22
·
Atualizado
2019-10-03
·
CVE-2017-4915
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VMware Workstation Pro/Player (affected versions not specified)
Description
The issue is related to an insecure library loading vulnerability via ALSA sound driver configuration files. This could allow unprivileged host users to escalate their privileges to root in a Linux host machine.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Incorrect Authorization
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alsa
Vmware Workstation
Vmware Workstation Player