CVE-2025-22247

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.
Configurations

No configuration.

History

14 May 2025, 17:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/05/msg00017.html -
Summary
  • (es) VMware Tools contiene una vulnerabilidad de gestión insegura de archivos. Un agente malicioso con privilegios no administrativos en una máquina virtual invitada podría manipular los archivos locales para activar operaciones inseguras dentro de esa máquina virtual.

13 May 2025, 04:16

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2025/05/13/2 -

12 May 2025, 19:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2025/05/12/2 -

12 May 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-12 11:15

Updated : 2025-05-14 17:15


NVD link : CVE-2025-22247

Mitre link : CVE-2025-22247

CVE.ORG link : CVE-2025-22247


JSON object : View

Products Affected

No product.

CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')