Beveiligingsadvies

CVE-2023-34059

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-10-27 04:53:31
Laatst bijgewerkt 2025-03-06 15:39:21
Toegewezen door vmware
CVSS-score 7.4
Status PUBLISHED

Beschrijving

open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.