CVE-2018-6969

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
13/07/2018
Last modified:
11/09/2018

Description

VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may lead to information disclosure or may allow attackers to escalate their privileges on the guest VMs. In order to be able to exploit this issue, file sharing must be enabled.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vmware:tools:*:*:*:*:*:*:*:* 10.3.0 (excluding)