vendor:
Fusion
by:
Rich Mirch
7.8
CVSS
HIGH
Privilege Escalation
269
CWE
Product Name: Fusion
Affected Version From: VMware Fusion Professional 11.5.1 (15018442)
Affected Version To: VMware Fusion Professional 11.5.2 (15794494)
Patch Exists: YES
Related CWE: CVE-2020-3950
CPE: a:vmware:fusion
Other Scripts:
N/A
Platforms Tested: macOS 10.14.6
2020
VMware Fusion 11.5.2 – Privilege Escalation
A privilege escalation vulnerability exists in VMware Fusion 11.5.1 and 11.5.2 that allows an attacker to gain root privileges on the host system. The vulnerability is due to the insecure handling of the Open VMware USB Arbitrator Service. An attacker can exploit this vulnerability by creating a malicious service in the ~/Contents/Library/services directory and then linking it to the ~/a/b/c directory. The malicious service will then be executed when the Open VMware USB Arbitrator Service is started. This will allow the attacker to gain root privileges on the host system.
Mitigation:
Users should upgrade to VMware Fusion 11.5.3 or later to address this vulnerability.