VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration files. Successful exploitation of this issue may allow unprivileged host users to escalate their privileges to root in a Linux host machine.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/98566 | vdb entry third party advisory |
https://www.vmware.com/security/advisories/VMSA-2017-0009.html | patch vendor advisory |
http://www.securitytracker.com/id/1038525 | vdb entry |
https://www.exploit-db.com/exploits/42045/ | exploit |