First published: Fri Nov 20 2020(Updated: )
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileges within the VMX process only, may escalate their privileges on the affected system. Successful exploitation of this issue is only possible when chained with another vulnerability (e.g. CVE-2020-4004)
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Cloud Foundation | >=3.0<3.10.1.2 | |
VMware Cloud Foundation | >=4.0<4.1.0.1 | |
VMware ESXi | =6.5 | |
VMware ESXi | =6.5-650-201701001 | |
VMware ESXi | =6.5-650-201703001 | |
VMware ESXi | =6.5-650-201703002 | |
VMware ESXi | =6.5-650-201704001 | |
VMware ESXi | =6.5-650-201707101 | |
VMware ESXi | =6.5-650-201707102 | |
VMware ESXi | =6.5-650-201707103 | |
VMware ESXi | =6.5-650-201707201 | |
VMware ESXi | =6.5-650-201707202 | |
VMware ESXi | =6.5-650-201707203 | |
VMware ESXi | =6.5-650-201707204 | |
VMware ESXi | =6.5-650-201707205 | |
VMware ESXi | =6.5-650-201707206 | |
VMware ESXi | =6.5-650-201707207 | |
VMware ESXi | =6.5-650-201707208 | |
VMware ESXi | =6.5-650-201707209 | |
VMware ESXi | =6.5-650-201707210 | |
VMware ESXi | =6.5-650-201707211 | |
VMware ESXi | =6.5-650-201707212 | |
VMware ESXi | =6.5-650-201707213 | |
VMware ESXi | =6.5-650-201707214 | |
VMware ESXi | =6.5-650-201707215 | |
VMware ESXi | =6.5-650-201707216 | |
VMware ESXi | =6.5-650-201707217 | |
VMware ESXi | =6.5-650-201707218 | |
VMware ESXi | =6.5-650-201707219 | |
VMware ESXi | =6.5-650-201707220 | |
VMware ESXi | =6.5-650-201707221 | |
VMware ESXi | =6.5-650-201710001 | |
VMware ESXi | =6.5-650-201712001 | |
VMware ESXi | =6.5-650-201803001 | |
VMware ESXi | =6.5-650-201806001 | |
VMware ESXi | =6.5-650-201808001 | |
VMware ESXi | =6.5-650-201810001 | |
VMware ESXi | =6.5-650-201810002 | |
VMware ESXi | =6.5-650-201811001 | |
VMware ESXi | =6.5-650-201811002 | |
VMware ESXi | =6.5-650-201811301 | |
VMware ESXi | =6.5-650-201901001 | |
VMware ESXi | =6.5-650-201903001 | |
VMware ESXi | =6.5-650-201905001 | |
VMware ESXi | =6.5-650-201908001 | |
VMware ESXi | =6.5-650-201910001 | |
VMware ESXi | =6.5-650-20191004001 | |
VMware ESXi | =6.5-650-201911001 | |
VMware ESXi | =6.5-650-201911401 | |
VMware ESXi | =6.5-650-201911402 | |
VMware ESXi | =6.5-650-201912001 | |
VMware ESXi | =6.5-650-201912002 | |
VMware ESXi | =6.5-650-201912101 | |
VMware ESXi | =6.5-650-201912102 | |
VMware ESXi | =6.5-650-201912103 | |
VMware ESXi | =6.5-650-201912104 | |
VMware ESXi | =6.5-650-201912301 | |
VMware ESXi | =6.5-650-201912401 | |
VMware ESXi | =6.5-650-201912402 | |
VMware ESXi | =6.5-650-201912403 | |
VMware ESXi | =6.5-650-201912404 | |
VMware ESXi | =6.5-650-202005001 | |
VMware ESXi | =6.5-650-202006001 | |
VMware ESXi | =6.5-650-202007001 | |
VMware ESXi | =6.5-650-202010001 | |
VMware ESXi | =6.5-650-202011001 | |
VMware ESXi | =6.5-650-202011002 | |
VMware ESXi | =6.7 | |
VMware ESXi | =6.7-670-201806001 | |
VMware ESXi | =6.7-670-201807001 | |
VMware ESXi | =6.7-670-201808001 | |
VMware ESXi | =6.7-670-201810001 | |
VMware ESXi | =6.7-670-201810101 | |
VMware ESXi | =6.7-670-201810102 | |
VMware ESXi | =6.7-670-201810103 | |
VMware ESXi | =6.7-670-201810201 | |
VMware ESXi | =6.7-670-201810202 | |
VMware ESXi | =6.7-670-201810203 | |
VMware ESXi | =6.7-670-201810204 | |
VMware ESXi | =6.7-670-201810205 | |
VMware ESXi | =6.7-670-201810206 | |
VMware ESXi | =6.7-670-201810207 | |
VMware ESXi | =6.7-670-201810208 | |
VMware ESXi | =6.7-670-201810209 | |
VMware ESXi | =6.7-670-201810210 | |
VMware ESXi | =6.7-670-201810211 | |
VMware ESXi | =6.7-670-201810212 | |
VMware ESXi | =6.7-670-201810213 | |
VMware ESXi | =6.7-670-201810214 | |
VMware ESXi | =6.7-670-201810215 | |
VMware ESXi | =6.7-670-201810216 | |
VMware ESXi | =6.7-670-201810217 | |
VMware ESXi | =6.7-670-201810218 | |
VMware ESXi | =6.7-670-201810219 | |
VMware ESXi | =6.7-670-201810220 | |
VMware ESXi | =6.7-670-201810221 | |
VMware ESXi | =6.7-670-201810222 | |
VMware ESXi | =6.7-670-201810223 | |
VMware ESXi | =6.7-670-201810224 | |
VMware ESXi | =6.7-670-201810225 | |
VMware ESXi | =6.7-670-201810226 | |
VMware ESXi | =6.7-670-201810227 | |
VMware ESXi | =6.7-670-201810228 | |
VMware ESXi | =6.7-670-201810229 | |
VMware ESXi | =6.7-670-201810230 | |
VMware ESXi | =6.7-670-201810231 | |
VMware ESXi | =6.7-670-201810232 | |
VMware ESXi | =6.7-670-201810233 | |
VMware ESXi | =6.7-670-201810234 | |
VMware ESXi | =6.7-670-201811001 | |
VMware ESXi | =6.7-670-201901001 | |
VMware ESXi | =6.7-670-201901401 | |
VMware ESXi | =6.7-670-201901402 | |
VMware ESXi | =6.7-670-201901403 | |
VMware ESXi | =6.7-670-201903001 | |
VMware ESXi | =6.7-670-201904001 | |
VMware ESXi | =6.7-670-201904201 | |
VMware ESXi | =6.7-670-201904201-ug | |
VMware ESXi | =6.7-670-201904202 | |
VMware ESXi | =6.7-670-201904202-ug | |
VMware ESXi | =6.7-670-201904203 | |
VMware ESXi | =6.7-670-201904203-ug | |
VMware ESXi | =6.7-670-201904204 | |
VMware ESXi | =6.7-670-201904204-ug | |
VMware ESXi | =6.7-670-201904205 | |
VMware ESXi | =6.7-670-201904205-ug | |
VMware ESXi | =6.7-670-201904206 | |
VMware ESXi | =6.7-670-201904206-ug | |
VMware ESXi | =6.7-670-201904207 | |
VMware ESXi | =6.7-670-201904207-ug | |
VMware ESXi | =6.7-670-201904208 | |
VMware ESXi | =6.7-670-201904208-ug | |
VMware ESXi | =6.7-670-201904209 | |
VMware ESXi | =6.7-670-201904209-ug | |
VMware ESXi | =6.7-670-201904210 | |
VMware ESXi | =6.7-670-201904210-ug | |
VMware ESXi | =6.7-670-201904211 | |
VMware ESXi | =6.7-670-201904211-ug | |
VMware ESXi | =6.7-670-201904212 | |
VMware ESXi | =6.7-670-201904212-ug | |
VMware ESXi | =6.7-670-201904213 | |
VMware ESXi | =6.7-670-201904213-ug | |
VMware ESXi | =6.7-670-201904214 | |
VMware ESXi | =6.7-670-201904214-ug | |
VMware ESXi | =6.7-670-201904215 | |
VMware ESXi | =6.7-670-201904215-ug | |
VMware ESXi | =6.7-670-201904216 | |
VMware ESXi | =6.7-670-201904216-ug | |
VMware ESXi | =6.7-670-201904217 | |
VMware ESXi | =6.7-670-201904217-ug | |
VMware ESXi | =6.7-670-201904218 | |
VMware ESXi | =6.7-670-201904218-ug | |
VMware ESXi | =6.7-670-201904219 | |
VMware ESXi | =6.7-670-201904219-ug | |
VMware ESXi | =6.7-670-201904220 | |
VMware ESXi | =6.7-670-201904220-ug | |
VMware ESXi | =6.7-670-201904221 | |
VMware ESXi | =6.7-670-201904221-ug | |
VMware ESXi | =6.7-670-201904222 | |
VMware ESXi | =6.7-670-201904222-ug | |
VMware ESXi | =6.7-670-201904223 | |
VMware ESXi | =6.7-670-201904223-ug | |
VMware ESXi | =6.7-670-201904224 | |
VMware ESXi | =6.7-670-201904224-ug | |
VMware ESXi | =6.7-670-201904225 | |
VMware ESXi | =6.7-670-201904225-ug | |
VMware ESXi | =6.7-670-201904226 | |
VMware ESXi | =6.7-670-201905001 | |
VMware ESXi | =6.7-670-201906002 | |
VMware ESXi | =6.7-670-201911001 | |
VMware ESXi | =6.7-670-201912001 | |
VMware ESXi | =6.7-670-202004001 | |
VMware ESXi | =6.7-670-202004002 | |
VMware ESXi | =6.7-670-202006001 | |
VMware ESXi | =6.7-670-202008001 | |
VMware ESXi | =6.7-670-202010001 | |
VMware ESXi | =7.0 | |
VMware ESXi | =7.0-beta | |
VMware ESXi | =7.0-update_1 | |
VMware ESXi | =7.0-update_1a | |
VMware ESXi | =7.0-update_1b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4005 is rated as critical due to its privilege escalation capabilities.
To fix CVE-2020-4005, upgrade VMware ESXi to the latest patched version that addresses the vulnerability.
CVE-2020-4005 affects VMware ESXi versions 6.5 prior to 6.5-202011301-SG, 6.7 prior to 6.7-202011101-SG, and 7.0 prior to 7.0U1b-17168206.
Only malicious actors with privileges within the VMX process can exploit CVE-2020-4005.
CVE-2020-4005 impacts systems running affected versions of VMware ESXi and VMware Cloud Foundation.