open-vm-tools-11.3.5-1.el9.1

エラータID: AXSA:2022-4085:04

Release date: 
Thursday, November 17, 2022 - 11:13
Subject: 
open-vm-tools-11.3.5-1.el9.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

The Open Virtual Machine Tools are the open source implementation of the VMware Tools. They are a set of guest operating system virtualization components that enhance performance and user experience of virtual machines.

Security Fix(es):

* open-vm-tools: local root privilege escalation in the virtual machine (CVE-2022-31676)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-31676
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. open-vm-tools-11.3.5-1.el9.1.src.rpm
    MD5: 214bd1c68da240ce818d314dbf7fba24
    SHA-256: 04eabf18aab7f3998297639681ccc895438771c8c73788775890dfe269bd8375
    Size: 4.01 MB

Asianux Server 9 for x86_64
  1. open-vm-tools-11.3.5-1.el9.1.x86_64.rpm
    MD5: bea2fbd5d5cc90d490e3da6a49f740c8
    SHA-256: 600261b23ebfa0834df80cbcd969fe153dda7375b60b0f401f399edae62b8191
    Size: 840.28 kB
  2. open-vm-tools-desktop-11.3.5-1.el9.1.x86_64.rpm
    MD5: 08048c83eb60962a84b5233d503e39fd
    SHA-256: e80d9c1e88508c8bb2caa55972df91c7253e6f6f95d102ff093986d034b65d47
    Size: 159.26 kB
  3. open-vm-tools-sdmp-11.3.5-1.el9.1.x86_64.rpm
    MD5: bfbe533593d20021487ee92fc634793a
    SHA-256: 4711163a5dd351b2674d1b17cd902c8d69343f3d806a98c6d3565ac2f3143df4
    Size: 23.04 kB
  4. open-vm-tools-test-11.3.5-1.el9.1.x86_64.rpm
    MD5: ff27aa28c3a0e5a5873384375fae9b39
    SHA-256: 070e2888765be1e0aa76a149fd76d9a4546c5c0b52fc1317c7f432e98ac8d562
    Size: 16.62 kB