CVE-2021-22043
16.02.2022, 17:15
VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled. A malicious actor with access to settingsd, may exploit this issue to escalate their privileges by writing arbitrary files.
Vendor | Product | Version |
---|---|---|
vmware | fusion | 𝑥 < 4.4 |
vmware | esxi | 7.0:update_1 |
vmware | esxi | 7.0:update_2 |
vmware | esxi | 7.0:update_3 |
𝑥
= Vulnerable software versions