Description
vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.
CVSS vector
AV:L/AC:M/C:C/I:N/A:NExploitability: 3.4 | Impact: 6.9Integrity: None
Availability: None
Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-959q-xwwj-g697: vm-support 0↗2022-05-17 ▶ CVEListCVE-2014-4200: vm-support 0↗2014-08-28 ▶ OSVCVE-2014-4200: vm-support 0↗2014-08-28 ▶ 📋Vendor Advisories
2Red Hatopen-vm-tools: vm-support's diagnostics archive created with world-readable permissions↗2014-08-26 ▶ DebianCVE-2014-4200: open-vm-tools - vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through ...↗2014 ▶ 💬Community
3BugzillaCVE-2014-4200 CVE-2014-4199 open-vm-tools: various flaws [epel-6]↗2014-11-20 ▶ BugzillaCVE-2014-4200 CVE-2014-4199 open-vm-tools: various flaws [fedora-all]↗2014-11-20 ▶ BugzillaCVE-2014-4200 open-vm-tools: vm-support's diagnostics archive created with world-readable permissions↗2014-11-20 ▶