VMware ESXi, WorkstationºÍFusion»Ø¾ø·þÎñ·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-10-29

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-5536£¬£¬£¬£¬£¬ £¬£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.5£¬£¬£¬£¬£¬ £¬£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


VMware ESXi 6.7°æ±¾£¬£¬£¬£¬£¬ £¬£¬6.5°æ±¾

VMware Workstation 15.x°æ±¾

VMware Fusion 11.x°æ±¾


·ì϶¸ÅÊö


VMware ESXiµÈ¶¼ÊÇÃÀ¹úÍþ¨VMware£©¹«Ë¾µÄ²úÆ·¡£¡£ ¡£¡£¡£¡£¡£¡£VMware ESXiÊÇÒ»Ì׿ÉÖ±½Ó×°ÖÃÔÚÎïÀí·þÎñÆ÷ÉϵķþÎñÆ÷Ðé¹¹»¯Æ½Ì¨¡£¡£ ¡£¡£¡£¡£¡£¡£VMware WorkstationÊÇÒ»Ì×Ðé¹¹»úÈí¼þ¡£¡£ ¡£¡£¡£¡£¡£¡£VMware FusionÊÇÒ»Ì×רÓÃÓÚÔÚÆ»¹û»ú£¨Mac£©ÉÏÔËÐÐWindowsÀûÓ÷¨Ê½µÄµÄÐé¹¹»úÈí¼þ¡£¡£ ¡£¡£¡£¡£¡£¡£


VMware ESXi¡¢VMware WorkstationºÍVMware FusionÖеÄshaderÖ°ÄÜ´æÔÚÒ»¸ö¿ÉÀûÓõĻؾø·þÎñ·ì϶¡£¡£ ¡£¡£¡£¡£¡£¡£ÌØÔìµÄÏñËØ×ÅÉ«Æ÷¿ÉÄܻᵼÖ»ؾø·þÎñ¡£¡£ ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»Ìá¹©ÌØÔìµÄ×ÅÉ«Æ÷ÎļþÀ´´¥·¢´Ë·ì϶¡£¡£ ¡£¡£¡£¡£¡£¡£¿£¿£¿ £¿£Äܹ»´ÓVMware guestÐé¹¹»ú´¥·¢´Ë·ì϶£¬£¬£¬£¬£¬ £¬£¬²¢ÇÒVMwareÖ÷»ú½«Êܵ½Ó°Ï죬£¬£¬£¬£¬ £¬£¬´Ó¶øµ¼ÖÂÖ÷»úÉϵÄVMwareÈںϹý³Ì±ÀÀ£¡£¡£ ¡£¡£¡£¡£¡£¡£


·ì϶ÑéÖ¤


POC: https://talosintelligence.com/vulnerability_reports/TALOS-2019-0848¡£¡£ ¡£¡£¡£¡£¡£¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬£¬£¬£¬£¬ £¬£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0019.html¡£¡£ ¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://blog.talosintelligence.com/2019/10/vuln-spotlight-vmware-fusion-oct-19-dos.html