Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in vmware-authd in VMware Workstation 5.x before 5.5.7 build 91707 and 6.x before 6.0.4 build 93057, VMware Player 1.x before 1.0.7 build 91707 and 2.x before 2.0.4 build 93057, and VMware Server before 1.0.6 build 91891 on Linux, and VMware ESXi 3.5 and VMware ESX 2.5.4 through 3.5, allows local users to gain privileges via a library path option in a configuration file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
VMware VMware配置文件选项任意代码执行漏洞
Vulnerability Description
VMWare是一款虚拟PC软件,允许在一台机器上同时运行两个或多个Windows、DOS、LINUX系统。 Linux版本的VMware产品中包含有以set-uid root安装的程序vmware-authd,在执行时该程序会从用户的VMware配置文件读取配置选项,而其中的一个选项允许用户指定程序查找共享库模块所在的目录。通过加载特制的库,攻击者就可以以提升的权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A