---------------------------------------------------------------------- Secunia CSI + Microsoft SCCM ----------------------- = Extensive Patch Management http://secunia.com/vulnerability_scanning/corporate/wsus_sccm_3rd_third_party_patching/ ---------------------------------------------------------------------- TITLE: VMware Products VMware Tools Two Vulnerabilities SECUNIA ADVISORY ID: SA39198 VERIFY ADVISORY: http://secunia.com/advisories/39198/ DESCRIPTION: Two vulnerabilities have been reported in multiple VMware products, which can be exploited by malicious, local users to potentially gain escalated privileges, and by malicious people to compromise a vulnerable system. 1) An error related to the unsafe loading of libraries exists in the VMware Tools package for Windows. This can be exploited to execute arbitrary code on a guest system by tricking a user into clicking a file placed on a network share. 2) An error in the VMware Tools package for Windows can be exploited to potentially gain escalated privileges by placing a malicious executable in a certain location inside a guest operating system. NOTE: This vulnerability cannot be exploited without administrative privileges on recent Windows versions (e.g. Windows XP and Windows Vista). The vulnerabilities are reported in the following products and versions: * VMware ESXi versions 3.5 and 4.0 * VMware ESX Server versions 2.5.5, 3.0.3, 3.5, and 4.0 * VMware Server 2.x SOLUTION: Apply patches and update VMware Tools in guest operating systems. Please see the vendor's advisory for more information. PROVIDED AND/OR DISCOVERED BY: 1) Jure Skofic and Mitja Kolsek of ACROS Security 2) Mitja Kolsek of ACROS Security CHANGELOG: 2010-04-13: Added reporter links to the "Original Advisory" section. ORIGINAL ADVISORY: VMSA-2010-0007: http://lists.vmware.com/pipermail/security-announce/2010/000090.html ACROS Security: http://www.acrossecurity.com/aspr/ASPR-2010-04-12-1-PUB.txt http://www.acrossecurity.com/aspr/ASPR-2010-04-12-2-PUB.txt ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help private users keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/advisories/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/advisories/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------