A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
References
Link | Resource |
---|---|
http://www.openwall.com/lists/oss-security/2023/10/16/11 | Mailing List Patch |
http://www.openwall.com/lists/oss-security/2023/10/16/2 | Mailing List Patch |
https://lists.debian.org/debian-lts-announce/2023/08/msg00020.html | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NVKQ6Y2JFJRWPFOZUOTFO3H27BK5GGOG/ | Mailing List Release Notes |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TJNJMD67QIT6LXLKWSHFM47DCLRSMT6W/ | Mailing List Release Notes |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZJM6HDRQYS74JA7YNKQBFH2XSZ52HEWH/ | Mailing List Release Notes |
https://security.netapp.com/advisory/ntap-20230725-0001/ | Third Party Advisory |
https://www.debian.org/security/2023/dsa-5493 | Mailing List Third Party Advisory |
https://www.vmware.com/security/advisories/VMSA-2023-0013.html | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: vmware
Published: 2023-06-13T16:47:21.689Z
Updated: 2023-06-13T16:47:30.401Z
Reserved: 2022-11-01T15:41:50.390Z
Link: CVE-2023-20867
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-06-13T17:15:14.070
Modified: 2024-06-27T19:05:20.020
Link: CVE-2023-20867
JSON object: View
Redhat Information
No data.
CWE