QID 377855
Date Published: 2022-12-29
QID 377855: VMware Tools Denial of Service (DoS) Vulnerability (CVE-2022-31693)
VMware Tools is a set of services and components that enable several features in various VMware products for better management and seamless user interactions with guest operating systems and improves management of the virtual machine running on VMware.
A malicious actor with local user privileges in the Windows guest OS, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest OS.
Affected Versions:
VMware Tools version 10.x.y
VMware Tools version 11.x.y.
VMware Tools version 12.x.y and prior to version 12.1.5.
QID Detection Logic:(Authenticated)
It checks for vulnerable version of VMware tools.
The primary focus of a DoS attack is to oversaturate the capacity of a targeted machine, resulting in denial-of-service to additional requests. The multiple attack vectors of DoS attacks can be grouped by their similarities.
For more information please visit VMware advisory VMSA-2020-0002
- VMSA-2022-0029 -
www.vmware.com/security/advisories/VMSA-2022-0029.html
CVEs related to QID 377855
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| VMSA-2022-0029 |
|