Privilege Escalation Flaw Found in VMware Tools

Discussion in 'Computers & Tech' started by tsr, Jan 8, 2016.

  1. tsr

    tsr New Member

    Joined:
    Jan 3, 2016
    Messages:
    78
    Likes Received:
    4
    Trophy Points:
    0
    By Eduard Kovacs on January 08, 2016

    The first security advisory published by VMware in 2016 describes an important guest privilege escalation vulnerability in VMware Tools.

    VMware Tools includes utilities designed to enhance the performance of the virtual machine (VM) guest operating system and improve VM management.

    Dmitry Janushkevich from the Secunia Research Team discovered that the Shared Folders (HGFS) feature running on Windows is plagued by a memory corruption flaw (CVE-2015-6933) that can be exploited by an attacker to escalate their privileges in the guest operating system.

    VMware has pointed out that the vulnerability cannot be exploited to escalate privileges from the guest operating system to the host, and host memory cannot be manipulated from the guest.

    Full Article Here: http://www.securityweek.com/privilege-escalation-flaw-found-vmware-tools
     

Share This Page