CVE-2015-5191: Race Condition
Published Jul 28, 2017
·Updated
VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Affected Software
2 affected components
VMware Tools<=10.0.8
Linux Linux kernel
Event History
Jul 28, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2015-5191?
CVE-2015-5191 has a CVSS score of 7.2, indicating a high severity level due to potential local privilege escalation.
2
How do I fix CVE-2015-5191?
To fix CVE-2015-5191, upgrade VMware Tools to version 10.0.9 or later.
3
What systems are affected by CVE-2015-5191?
CVE-2015-5191 affects VMware Tools versions prior to 10.0.9.
4
What type of vulnerability is CVE-2015-5191?
CVE-2015-5191 is a local privilege escalation vulnerability due to multiple file system race conditions.
5
Can CVE-2015-5191 be exploited remotely?
CVE-2015-5191 cannot be exploited remotely, as it requires local access to the system.