MGASA-2025-0166

Source
https://advisories.mageia.org/MGASA-2025-0166.html
Import Source
https://advisories.mageia.org/MGASA-2025-0166.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2025-0166
Related
Published
2025-05-27T18:46:33Z
Modified
2025-05-27T18:08:23Z
Summary
Updated open-vm-tools packages fix security vulnerability
Details

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM. (CVE-2025-22247)

References
Credits

Affected packages

Mageia:9 / open-vm-tools

Package

Name
open-vm-tools
Purl
pkg:rpm/mageia/open-vm-tools?arch=source&distro=mageia-9

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
12.3.5-2.1.mga9

Ecosystem specific

{
    "section": "core"
}