ESXi¡¢WorkstationµÈ²úÆ·¸ßΣÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-09-23¡ñÎó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-5527£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.5£¬£¬£¬£¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
Product |
Version |
Running On |
CVSSV3 |
Fixed Version |
ESXi |
6.7 |
Any |
8.5 |
ESXi670-201904101-SG |
ESXi |
6.5 |
Any |
8.5 |
ESXi650-201903401-SG |
ESXi |
6.0 |
Any |
8.5 |
ESXi600-201909101-SG |
Workstation |
15.x |
Any |
8.5 |
15.5.0 |
Fusion |
11.x |
OS X |
8.5 |
11.5.0 |
VMRC for Windows |
10.x |
Windows |
8.5 |
10.0.5 and Later |
VMRC for Linux |
10.x |
Linux |
8.5 |
10.0.5 and Later |
Horizon Client for Windows |
5.x and prior |
Windows |
8.0 |
5.2.0 |
Horizon Client for Linux |
5.x and prior |
Linux |
8.0 |
5.2.0 |
Horizon Client for Mac |
5.x and prior |
OS X |
8.0 |
5.2.0 |
¡ñÎó²î¸ÅÊö
VMwareÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеĶà¸öÎó²î¡£¡£¡£¡£¡£¡£ÆäÖÐÒ»¸ö¸ßΣÎó²îÊÇESXi¡¢Workstation¡¢Fusion¡¢VMRCºÍHorizon ClientÖеÄuse-after-freeÎó²î£¬£¬£¬£¬£¬£¬£¬ÊÇÒ»¸öÐéÄâ»úÌÓÒÝÎó²î£¬£¬£¬£¬£¬£¬£¬¿Í»§»úÉϾßÓзÇÖÎÀíԱȨÏÞµÄÍâµØ¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚËÞÖ÷»úÉÏÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£
¡ñÎó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£¡£
¡ñÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬£¬£¬ÏÂÔØÁ´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0014.html¡£¡£¡£¡£¡£¡£
¡ñ²Î¿¼Á´½Ó
https://www.vmware.com/security/advisories/VMSA-2019-0014.html