First published: Mon Apr 11 2022(Updated: )
VMware Horizon Agent for Linux (prior to 22.x) contains a local privilege escalation that allows a user to escalate to root due to a vulnerable configuration file.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Horizon | <2203 | |
Linux Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-22964 is a local privilege escalation vulnerability in VMware Horizon Agent for Linux (prior to version 22.x) that allows a user to escalate to root due to a vulnerable configuration file.
CVE-2022-22964 affects VMware Horizon Agent for Linux (prior to version 22.x) by allowing a user to escalate privileges to root.
The severity of CVE-2022-22964 is high, with a CVSS score of 7.8.
To fix CVE-2022-22964, update VMware Horizon Agent for Linux to version 22.x or later.
More information about CVE-2022-22964 can be found in the VMware security advisory VMSA-2022-0012 at the following link: https://www.vmware.com/security/advisories/VMSA-2022-0012.html