Security Advisory

CVE-2023-34059

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-27 04:53:31
Last updated 2025-03-06 15:39:21
Assigner vmware
State PUBLISHED

Description

open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.