ESXi¡¢WorkstationµÈ²úÆ·¸ßΣ·ì϶°²È«¹«¸æ
°ä²¼¹¦·ò 2019-09-23¡ñ·ì϶±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-5527£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.5£¬¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
|
Product |
Version |
Running On |
CVSSV3 |
Fixed Version |
|
ESXi |
6.7 |
Any |
8.5 |
ESXi670-201904101-SG |
|
ESXi |
6.5 |
Any |
8.5 |
ESXi650-201903401-SG |
|
ESXi |
6.0 |
Any |
8.5 |
ESXi600-201909101-SG |
|
Workstation |
15.x |
Any |
8.5 |
15.5.0 |
|
Fusion |
11.x |
OS X |
8.5 |
11.5.0 |
|
VMRC for Windows |
10.x |
Windows |
8.5 |
10.0.5 and Later |
|
VMRC for Linux |
10.x |
Linux |
8.5 |
10.0.5 and Later |
|
Horizon Client for Windows |
5.x and prior |
Windows |
8.0 |
5.2.0 |
|
Horizon Client for Linux |
5.x and prior |
Linux |
8.0 |
5.2.0 |
|
Horizon Client for Mac |
5.x and prior |
OS X |
8.0 |
5.2.0 |
¡ñ·ì϶¸ÅÊö
VMware°ä²¼°²È«¸üУ¬½¨¸´¶à¸ö²úÆ·ÖеĶà¸ö·ì϶¡£ÆäÖÐÒ»¸ö¸ßΣ·ì϶ÊÇESXi¡¢Workstation¡¢Fusion¡¢VMRCºÍHorizon ClientÖеÄuse-after-free·ì϶£¬ÊÇÒ»¸öÐé¹¹»úÌÓÒÝ·ì϶£¬¿Í»§»úÉÏÓµÓзÇÖÎÀíԱȨÏ޵ı¾µØ¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚËÞÖ÷»úÉÏÖ´ÐдúÂë¡£
¡ñ·ì϶ÑéÖ¤
ÔÝÎÞPOC/EXP¡£
¡ñ½¨¸´½¨Òé
Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬ÏÂÔØÁ´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0014.html¡£
¡ñ²Î¿¼Á´½Ó
https://www.vmware.com/security/advisories/VMSA-2019-0014.html


¾©¹«Íø°²±¸11010802024551ºÅ