QID 378578

Date Published: 2023-06-19

QID 378578: VMware Tools Authentication Bypass Vulnerability (VMSA-2023-0013)

VMware Tools is a set of services and components that enable several features in various VMware products for better management and seamless user interactions with guest operating systems and improves management of the virtual machine running on VMware.

VMware Tools contains an Authentication Bypass vulnerability in the vgauth module..

Affected Versions:
VMware Tools version 10.3.x
VMware Tools version 11.x.x.
VMware Tools version 12.x.x and prior to version 12.2.5.

QID Detection Logic:(Authenticated)
It checks for vulnerable version of VMware tools.

VMware Tools contains an Authentication Bypass vulnerability in the vgauth module.A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

  • CVSS V3 rated as Medium - 3.9 severity.
  • CVSS V2 rated as Low - 2.6 severity.
  • Solution
    To remediate this issue update to VMware Tools version VMware Tools 12.2.5
    For more information please visit VMware advisory VMSA-2023-0013

    CVEs related to QID 378578

    Software Advisories
    Advisory ID Software Component Link
    VMSA-2023-0013 URL Logo www.vmware.com/security/advisories/VMSA-2023-0013.html