CVE-2014-4200 Information

Description

vm-support 0.88 in VMware Tools as distributed with VMware Workstation through 10.0.3 and other products uses 0644 permissions for the vm-support archive which allows local users to obtain sensitive information by extracting files from this archive.

Reference

http://seclists.org/fulldisclosure/2014/Aug/71 http://www.securityfocus.com/bid/69410 http://www.securitytracker.com/id/1030758 https://exchange.xforce.ibmcloud.com/vulnerabilities/95494

Share on: