CVE-2019-5519: (Pwn2Own) VMware Workstation UHCI Race Condition Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on vulnerable installations of VMware Workstation. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the processing of data sent to UHCI endpoints. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the hypervisor.
Other sources
VMware ESXi (6.7 before ESXi670-201903001, 6.5 before ESXi650-201903001, 6.0 before ESXi600-201903001), Workstation (15.x before 15.0.4, 14.x before 14.1.7), Fusion (11.x before 11.0.3, 10.x before 10.1.6) contain a Time-of-check Time-of-use (TOCTOU) vulnerability in the virtual USB 1.1 UHCI (Universal Host Controller Interface). Exploitation of this issue requires an attacker to have access to a virtual machine with a virtual USB controller present. This issue may allow a guest to execute code on the host.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5519?
CVE-2019-5519 is rated as a high-severity vulnerability that allows local attackers to escalate privileges.
How do I fix CVE-2019-5519?
To mitigate CVE-2019-5519, it's essential to apply the latest security patches from VMware for affected products.
Which VMware products are affected by CVE-2019-5519?
CVE-2019-5519 impacts VMware Workstation, VMware Fusion, and specific versions of VMware ESXi.
What type of attack can exploit CVE-2019-5519?
CVE-2019-5519 can be exploited through local privilege escalation by executing low-privileged code.
Is it necessary to have elevated privileges to exploit CVE-2019-5519?
Yes, an attacker must first gain the ability to execute low-privileged code on the target system to exploit CVE-2019-5519.