VMware Workstation For Linux File Deletion Vulnerability
BID:8364
Info
VMware Workstation For Linux File Deletion Vulnerability
| Bugtraq ID: | 8364 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 07 2003 12:00AM |
| Updated: | Aug 07 2003 12:00AM |
| Credit: | Discovery is credited to Paul Szabo. |
| Vulnerable: |
VMWare Workstation 4.0.1 |
| Not Vulnerable: |
VMWare Workstation 4.0.2 |
Discussion
VMware Workstation For Linux File Deletion Vulnerability
VMWare Workstation for Linux platforms is reported to be prone to an issue that may allow unprivileged users on the host operating systems to delete privileged files via manipulation of symbolic links.
This issue is reported to affected VMWare Workstation for Linux 4.01 build 5289 and earlier releases. Windows versions are not affected.
VMWare Workstation for Linux platforms is reported to be prone to an issue that may allow unprivileged users on the host operating systems to delete privileged files via manipulation of symbolic links.
This issue is reported to affected VMWare Workstation for Linux 4.01 build 5289 and earlier releases. Windows versions are not affected.
Exploit / POC
VMware Workstation For Linux File Deletion Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
VMware Workstation For Linux File Deletion Vulnerability
Solution:
The vendor has addressed this in VMWare Workstation for Linux 4.0.2. Users should contact the vendor to obtain upgrades.
Solution:
The vendor has addressed this in VMWare Workstation for Linux 4.0.2. Users should contact the vendor to obtain upgrades.
References
VMware Workstation For Linux File Deletion Vulnerability
References:
References:
- VMware Homepage (VMware)
- VMware Workstation 4 Release Notes (VMWare)
- VMware Workstation 4.0.1 (for Linux systems) vulnerability (VMware Security Alert
)