First published: Wed Jun 07 2023(Updated: )
VMware Tools contains an authentication bypass vulnerability in the vgauth module. A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine. An attacker must have root access over ESXi to exploit this vulnerability.
Credit: security@vmware.com security@vmware.com security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Tools | >=10.3.0<12.2.5 | |
IBM QRadar SIEM | <=7.5.0 - 7.5.0 UP6 | |
VMware Tools | ||
redhat/open-vm-tools | <12.2.5 | 12.2.5 |
ubuntu/open-vm-tools | <2:10.2.0-3~ubuntu0.16.04.1+ | 2:10.2.0-3~ubuntu0.16.04.1+ |
ubuntu/open-vm-tools | <2:12.1.5-3~ubuntu0.22.04.2 | 2:12.1.5-3~ubuntu0.22.04.2 |
ubuntu/open-vm-tools | <2:12.1.5-3ubuntu0.23.04.1 | 2:12.1.5-3ubuntu0.23.04.1 |
ubuntu/open-vm-tools | <2:11.0.5-4ubuntu0.18.04.3+ | 2:11.0.5-4ubuntu0.18.04.3+ |
ubuntu/open-vm-tools | <2:11.3.0-2ubuntu0~ubuntu20.04.5 | 2:11.3.0-2ubuntu0~ubuntu20.04.5 |
debian/open-vm-tools | <=2:10.3.10-1+deb10u2 | 2:10.3.10-1+deb10u6 2:11.2.5-2+deb11u3 2:12.2.0-1+deb12u2 2:12.3.5-4 |
Debian Debian Linux | =10.0 | |
Debian Debian Linux | =11.0 | |
Debian Debian Linux | =12.0 | |
Fedoraproject Fedora | =37 | |
Fedoraproject Fedora | =38 | |
Fedoraproject Fedora | =39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-20867 is a vulnerability in VMware Tools that allows a fully compromised ESXi host to force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
VMware Tools is affected by CVE-2023-20867.
CVE-2023-20867 has a severity value of 3.9 (low).
To fix CVE-2023-20867, update VMware Tools to version 2:10.2.0-3~ubuntu0.16.04.1+ (for Ubuntu), 12.2.5 (for Red Hat), or the recommended versions for other distributions.
You can find more information about CVE-2023-20867 in the VMware Security Advisory VMSA-2023-0013.