ESXi¡¢WorkstationµÈ²úÆ·¸ßΣÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-09-23¡ñÎó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-5527£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.5£¬£¬¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
|
Product |
Version |
Running On |
CVSSV3 |
Fixed Version |
|
ESXi |
6.7 |
Any |
8.5 |
ESXi670-201904101-SG |
|
ESXi |
6.5 |
Any |
8.5 |
ESXi650-201903401-SG |
|
ESXi |
6.0 |
Any |
8.5 |
ESXi600-201909101-SG |
|
Workstation |
15.x |
Any |
8.5 |
15.5.0 |
|
Fusion |
11.x |
OS X |
8.5 |
11.5.0 |
|
VMRC for Windows |
10.x |
Windows |
8.5 |
10.0.5 and Later |
|
VMRC for Linux |
10.x |
Linux |
8.5 |
10.0.5 and Later |
|
Horizon Client for Windows |
5.x and prior |
Windows |
8.0 |
5.2.0 |
|
Horizon Client for Linux |
5.x and prior |
Linux |
8.0 |
5.2.0 |
|
Horizon Client for Mac |
5.x and prior |
OS X |
8.0 |
5.2.0 |
¡ñÎó²î¸ÅÊö
VMwareÐû²¼Çå¾²¸üУ¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеĶà¸öÎó²î¡£¡£¡£ÆäÖÐÒ»¸ö¸ßΣÎó²îÊÇESXi¡¢Workstation¡¢Fusion¡¢VMRCºÍHorizon ClientÖеÄuse-after-freeÎó²î£¬£¬ÊÇÒ»¸öÐéÄâ»úÌÓÒÝÎó²î£¬£¬¿Í»§»úÉϾßÓзÇÖÎÀíԱȨÏÞµÄÍâµØ¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚËÞÖ÷»úÉÏÖ´ÐдúÂë¡£¡£¡£
¡ñÎó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£¡£¡£
¡ñÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬ÏÂÔØÁ´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0014.html¡£¡£¡£
¡ñ²Î¿¼Á´½Ó
https://www.vmware.com/security/advisories/VMSA-2019-0014.html


¾©¹«Íø°²±¸11010802024551ºÅ