VMware Information Disclosure Vulnerability
BID:19060
CVE-2006-3589 |Info
VMware Information Disclosure Vulnerability
| Bugtraq ID: | 19060 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2006-3589 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 18 2006 12:00AM |
| Updated: | Jan 09 2007 07:02PM |
| Credit: | Nick Breese and security-assessment.com are credited with the discovery of this vulnerability. |
| Vulnerable: |
VMWare Workstation for Linux 0 VMWare Server for Linux 0 VMWare Player for Linux 0 VMWare ESX Server 2.5.2 VMWare ESX Server 2.5 VMWare ESX Server 2.1.2 VMWare ESX Server 2.1.1 VMWare ESX Server 2.1 VMWare ESX Server 2.0.1 build 6403 VMWare ESX Server 2.0.1 VMWare ESX Server 2.0 build 5257 VMWare ESX Server 2.0 |
| Not Vulnerable: |
VMWare Workstation 5.5.1 Build 19175 VMWare Workstation 5.0 .0 build-13124 VMWare Workstation 4.5.2 VMWare Workstation 4.5.2 VMWare Workstation 4.0.2 VMWare Workstation 4.0.1 VMWare Workstation 4.0 VMWare Workstation 3.4 VMWare Workstation 3.2.1 patch 1 VMWare VMWare 3.0 VMWare VMWare 2.0 VMWare VMWare 1.1.2 VMWare VMWare 1.1.1 VMWare VMWare 1.1 VMWare VMWare 1.0.2 VMWare VMWare 1.0.1 VMWare Player |
Discussion
VMware Information Disclosure Vulnerability
VMware is prone to an information-disclosure vulnerability because the software sets insecure permissions on SSL key and certificate files.
If an attacker can gain access to SSL key files used to encrypt remote administrative connections, they can decrypt this traffic.
VMware Player for Linux, VMware Workstation for Linux, VMware Server for Linux, and VMware Infrastructure 3 are reported vulnerable.
VMware is prone to an information-disclosure vulnerability because the software sets insecure permissions on SSL key and certificate files.
If an attacker can gain access to SSL key files used to encrypt remote administrative connections, they can decrypt this traffic.
VMware Player for Linux, VMware Workstation for Linux, VMware Server for Linux, and VMware Infrastructure 3 are reported vulnerable.
Exploit / POC
VMware Information Disclosure Vulnerability
Attackers can exploit this issue using a Windows or UNIX command shell, along with readily available tools that monitor network traffic.
Attackers can exploit this issue using a Windows or UNIX command shell, along with readily available tools that monitor network traffic.
Solution / Fix
VMware Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
VMware Information Disclosure Vulnerability
References:
References:
- VMware Homepage (VMware)
- VMSA-2006-0003 VMware possible incorrect permissions on SSL key files (VMware Security Team
)