Vulnerabilities (CVE)

Filtered by vendor Vmware Subscribe
Filtered by product Open-vm-tools
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1143 1 Vmware 1 Open-vm-tools 2023-12-10 N/A 7.0 HIGH
An issue was discovered in open-vm-tools 2009.03.18-154848. Local users can bypass intended access restrictions on mounting shares via a symlink attack that leverages a realpath race condition in mount.vmhgfs (aka hgfsmounter).
CVE-2011-1681 1 Vmware 1 Open-vm-tools 2023-12-10 3.3 LOW N/A
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.