Security Advisory

CVE-2024-10228

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-10-29 21:18:13
Last updated 2024-10-30 13:25:02
Assigner HashiCorp
State PUBLISHED

Description

The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified by an unprivileged user, introducing potential for unauthorized file system writes. This vulnerability, CVE-2024-10228, was fixed in Vagrant VMWare Utility 1.0.23