PT-2020-3045 · Vmware · Vmware Tools
Published
2020-01-15
·
Updated
2020-02-05
·
CVE-2020-3941
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VMware Tools versions prior to 11.x.y
Description
The issue is related to a race condition in the repair operation of VMware Tools for Windows, which may allow for privilege escalation in the Virtual Machine where Tools is installed. This is due to synchronization errors when using a shared resource.
Recommendations
For versions prior to 11.x.y, consider updating to version 11.x.y or later, as the affected functionality is not present in these versions, thus mitigating the risk of privilege escalation.
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vmware Tools