QID 378979

Date Published: 2023-10-30

QID 378979: VMware Tools Multiple Security Vulnerability (VMSA-2023-0024)

VMware Tools is a set of services and components that enable several features in various VMware products for better management and seamless user interactions with guest operating systems and improves management of the virtual machine running on VMware.

Affected Versions:
VMware Tools for Windows version 10.3.x
VMware Tools for Windows version 11.x.x.
VMware Tools for Windows version 12.x.x and prior to version 12.3.5

Affected Versions:
VMware Tools for macOS version 10.3.x
VMware Tools for macOS version 11.x.x.
VMware Tools for macOS version 12.x.x and prior to version 12.1.1

QID Detection Logic:(Authenticated)
It checks for vulnerable version of VMware tools.

A malicious actor with local user access to a guest virtual machine may elevate privileges within the virtual machine and A malicious actor that has been granted Guest Operation Privileges in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Low - 2.6 severity.
  • Solution
    For more information please visit VMware advisory VMSA-2023-0024

    CVEs related to QID 378979

    Software Advisories
    Advisory ID Software Component Link
    VMSA-2023-0024 URL Logo www.vmware.com/security/advisories/VMSA-2023-0024.html