CVE-2022-31676
published 2022-08-23CVE-2022-31676: VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the…
PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.54%
41.8th percentile
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | open-vm-tools | < open-vm-tools 2:12.1.0-1 (bookworm) | open-vm-tools 2:12.1.0-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| paloalto | pan-os | — | — |
| vmware | open-vm-tools | >= 0 < 2:11.2.5-2+deb11u1 | 2:11.2.5-2+deb11u1 |
| vmware | open-vm-tools | >= 0 < 2:12.1.0-1 | 2:12.1.0-1 |
| vmware | open-vm-tools | >= 0 < 2:12.1.0-1 | 2:12.1.0-1 |
| vmware | open-vm-tools | >= 0 < 2:12.1.0-1 | 2:12.1.0-1 |
| vmware | tools | >= 10.0.0 < 12.1.0 | 12.1.0 |
| vmware | tools | >= 10.0.0 < 10.3.25 | 10.3.25 |
| vmware | tools | >= 11.0.0 < 12.1.0 | 12.1.0 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Palo Alto
PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
vendor_paloalto·2024-04-10·CVSS 9.8
CVE-2015-5739 [CRITICAL] PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
PAN-SA-2024-0004 Informational Bulletin: OSS CVEs fixed in PAN-OS
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to PAN-OS. While it was not determined that these CVEs have any significant impact on PAN-OS, they have been fixed out of an abundance of caution. CVE Summary CVE-2015-5739 This CVE is fixed in PAN-OS 11.0.4, and all later PAN-OS versions. CVE-2016-10228 This CVE is fixed in PAN-OS 11.1.3, and all later PAN-OS versions. CVE-2017-8923 This CVE is fixed in PAN-OS 10.2.8, 11.0.3, and all later PAN-OS versions. CVE-2017-9120 This CVE is fixed in PAN-OS 10.2.8, 11.0.3, and all later PAN-OS versions. CVE-2018-25009 This CVE is fixed in PAN-OS 10.2.8, 11.0.4, 11.1.3, and all later PAN-OS versions. CVE-2
Palo Alto
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS
vendor_paloalto·2024-02-14·CVSS 9.8
CVE-2017-18342 [CRITICAL] PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to PAN-OS software. While PAN-OS software may include the
CVEs: CVE-2017-18342, CVE-2017-8923, CVE-2017-9120, CVE-2019-1551, CVE-2019-16865, CVE-2019-16905, CVE-2019-19523, CVE-2019-19528, CVE-2019-19911, CVE-2020-0404, CVE-2020-0431, CVE-2020-0466, CVE-2020-10379, CVE-2020-11538, CVE-2020-11608, CVE-2020-12114, CVE-2020-12321, CVE-2020-12362, CVE-2020-12363, CVE-2020-12364, CVE-2020-13757, CVE-2020-14314, CVE-2020-14351, CVE-2020-15778, CVE-2020-1967, CVE-2020-24394, CVE-2020-24504, CVE-2020-25211, CVE-2020-25212, CVE-2020-25284, CVE-2020-25285, CVE-2020-25717, CVE-2020-26541, CVE-2020-2715
Ubuntu
Open VM Tools vulnerability
vendor_ubuntu·2022-08-24
CVE-2022-31676 Open VM Tools vulnerability
Title: Open VM Tools vulnerability
Summary: open-vm-tools could be made to run programs as an administrator.
USN-5578-1 fixed a vulnerability in Open VM Tools. This update provides
the corresponding update for Ubuntu 16.04 ESM.
Original advisory details:
It was discovered that Open VM Tools incorrectly handled certain requests.
An attacker inside the guest could possibly use this issue to gain root
privileges inside the virtual machine.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Open VM Tools vulnerability
vendor_ubuntu·2022-08-24
CVE-2022-31676 Open VM Tools vulnerability
Title: Open VM Tools vulnerability
Summary: open-vm-tools could be made to run programs as an administrator.
It was discovered that Open VM Tools incorrectly handled certain requests.
An attacker inside the guest could possibly use this issue to gain root
privileges inside the virtual machine.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
open-vm-tools: local root privilege escalation in the virtual machine
vendor_redhat·2022-08-23·CVSS 7.8
CVE-2022-31676 [HIGH] CWE-250 open-vm-tools: local root privilege escalation in the virtual machine
open-vm-tools: local root privilege escalation in the virtual machine
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
A flaw was found in open-vm-tools. A malicious actor with local non-administrative access to the guest operating system can escalate privileges as a root user in the virtual machine.
Mitigation: Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
VMware
VMware Tools update addresses a local privilege escalation vulnerability (CVE-2022-31676)
vendor_vmware·2022-08-23·CVSS 7.8
CVE-2022-31676 [HIGH] VMware Tools update addresses a local privilege escalation vulnerability (CVE-2022-31676)
VMSA-2022-0024: VMware Tools update addresses a local privilege escalation vulnerability (CVE-2022-31676)
VMware Tools contains a local privilege escalation vulnerability. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 7.0.
CVEs: CVE-2022-31676
Affected products: VMware Tools
Debian
CVE-2022-31676: open-vm-tools - VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation v...
vendor_debian·2022·CVSS 7.8
CVE-2022-31676 [HIGH] CVE-2022-31676: open-vm-tools - VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation v...
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
Scope: local
bookworm: resolved (fixed in 2:12.1.0-1)
bullseye: resolved (fixed in 2:11.2.5-2+deb11u1)
forky: resolved (fixed in 2:12.1.0-1)
sid: resolved (fixed in 2:12.1.0-1)
trixie: resolved (fixed in 2:12.1.0-1)
GHSA
GHSA-whrm-jv67-hw75: VMware Tools (12
ghsa_unreviewed·2022-08-24
CVE-2022-31676 [HIGH] CWE-269 GHSA-whrm-jv67-hw75: VMware Tools (12
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
OSV
CVE-2022-31676: VMware Tools (12
osv·2022-08-23·CVSS 7.8
CVE-2022-31676 [HIGH] CVE-2022-31676: VMware Tools (12
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2022/08/23/3https://lists.debian.org/debian-lts-announce/2022/08/msg00013.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C5VV2R4LV4T3SNQJYRLFD4C75HBDVV76/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O4TZF6QRJIDECGMEGBPXJCHZ6YC3VZ6Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZA63DWRW7HROTVBNRIPBJQWBYIYAQMEW/https://security.gentoo.org/glsa/202210-27https://security.netapp.com/advisory/ntap-20221017-0003/https://www.debian.org/security/2022/dsa-5215https://www.vmware.com/security/advisories/VMSA-2022-0024.htmlhttp://www.openwall.com/lists/oss-security/2022/08/23/3https://lists.debian.org/debian-lts-announce/2022/08/msg00013.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C5VV2R4LV4T3SNQJYRLFD4C75HBDVV76/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O4TZF6QRJIDECGMEGBPXJCHZ6YC3VZ6Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZA63DWRW7HROTVBNRIPBJQWBYIYAQMEW/https://security.gentoo.org/glsa/202210-27https://security.netapp.com/advisory/ntap-20221017-0003/https://www.debian.org/security/2022/dsa-5215https://www.vmware.com/security/advisories/VMSA-2022-0024.html
2022-08-23
Published