← Back to CVE List
Vulnerability Intelligence Report

CVE-2015-5191

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

No Active Exploit Signals
CVSS Base Score
6.7
MEDIUM
EPSS Probability:0.33%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
VMware VMware Tools VMware Tools prior to 10.0.9 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.331%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityVMware by Broadcom · Vendor · USA
Reserved2015-07-01T00:00:00
Published2017-07-28T21:00:00
Patch Date2017-07-27
Last Updated2024-09-16T17:27:59

LINK COPIED TO CLIPBOARD