ESXi¡¢WorkstationµÈ²úÆ·¸ßΣ·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-09-23

¡ñ·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-5527£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.5£¬¹Ù·½Î´ÆÀ¶¨


¡ñÓ°Ïì°æ±¾


Product

Version

Running On

CVSSV3

Fixed Version

ESXi

6.7

Any

8.5

ESXi670-201904101-SG

ESXi

6.5

Any

8.5

ESXi650-201903401-SG

ESXi

6.0

Any

8.5

ESXi600-201909101-SG

Workstation

15.x

Any

8.5

15.5.0

Fusion

11.x

OS X

8.5

11.5.0

VMRC for Windows

10.x

Windows

8.5

10.0.5 and Later

VMRC for Linux

10.x

Linux

8.5

10.0.5 and Later

Horizon Client for Windows

5.x and prior

Windows

8.0

5.2.0

Horizon Client for Linux

5.x and prior

Linux

8.0

5.2.0

Horizon Client for Mac

5.x and prior

OS X

8.0

5.2.0


¡ñ·ì϶¸ÅÊö


VMware°ä²¼°²È«¸üУ¬½¨¸´¶à¸ö²úÆ·ÖеĶà¸ö·ì϶¡£ÆäÖÐÒ»¸ö¸ßΣ·ì϶ÊÇESXi¡¢Workstation¡¢Fusion¡¢VMRCºÍHorizon ClientÖеÄuse-after-free·ì϶£¬ÊÇÒ»¸öÐé¹¹»úÌÓÒÝ·ì϶£¬¿Í»§»úÉÏÓµÓзÇÖÎÀíԱȨÏ޵ı¾µØ¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚËÞÖ÷»úÉÏÖ´ÐдúÂë¡£


¡ñ·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


¡ñ½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬ÏÂÔØÁ´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0014.html¡£


¡ñ²Î¿¼Á´½Ó


https://www.vmware.com/security/advisories/VMSA-2019-0014.html