First published: Thu Mar 29 2018(Updated: )
Hashicorp vagrant-vmware-fusion 5.0.4 allows local users to steal root privileges if VMware Fusion is not installed.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HashiCorp Vagrant | =5.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-16839 is considered to have high severity due to its potential for privilege escalation.
To fix CVE-2017-16839, ensure that VMware Fusion is installed and properly configured on your system.
Local users on systems running Hashicorp Vagrant VMware Fusion version 5.0.4 without VMware Fusion installed are affected by CVE-2017-16839.
No, CVE-2017-16839 is not a remote exploitation vulnerability; it requires local access to the affected system.
Systems using Hashicorp Vagrant VMware Fusion version 5.0.4 without VMware Fusion installed are vulnerable to CVE-2017-16839.