¡¸Îó²îͨ¸æ¡¹VMwareȨÏÞÌáÉýÎó²î£¨CVE-2020-3950£©
2020-03-18
Ò»¡¢Îó²î¸ÅÊö
3ÔÂ17ÈÕ£¬VMware¹Ù·½Ðû²¼±àºÅΪVMSA-2020-0005µÄÇ徲ͨ¸æ£¬ÐÞ¸´Á˱£´æÓÚVMware Fusion£¬VMRC for Mac ºÍHorizon Client for MacÖеÄȨÏÞÌáÉýÎó²î£¨CVE-2020-3950£©£¬ÓÉÓÚVMware¹ýʧµÄʹÓÃÁËsetuid£¬¹¥»÷ÕßʹÓôËÎó²î¿É½«Ä¿µÄϵͳÖеÄͨË×Óû§È¨ÏÞÌáÉýÖÁÖÎÀíԱȨÏÞ¡£ÏÖÔÚPoCÒѹûÕæ£¬½¨ÒéÏà¹ØÓû§Éý¼¶°æ±¾¾ÙÐзÀ»¤¡£
Îó²î¸´ÏÖÀֳɵĽØÍ¼ÈçÏ£º

²Î¿¼Á´½Ó£º
https://www.vmware.com/security/advisories/VMSA-2020-0005.html
¶þ¡¢Ó°Ïì¹æÄ£
ÊÜÓ°Ïì°æ±¾£º
- VMware Fusion < 11.5.2
- VMware Remote Console for Mac <= 11.x
- VMware Horizon Client for Mac < 5.4.0
²»ÊÜÓ°Ïì°æ±¾£º
- VMware Fusion = 11.5.2
- VMware Remote Console for Mac = 11.0.1
- VMware Horizon Client for Mac = 5.4.0
Èý¡¢Îó²î¼ì²â
3.1 °æ±¾¼ì²â
ʹÓÃVMwareÈí¼þµÄÓû§¿ÉÒÔͨ¹ýÉó²é°æÔÀ´ÅжÏÊÇ·ñÔÚÊÜÓ°Ïì¹æÄ£ÄÚ£¬ÒÔVMware FusionΪÀý£¬µã»÷²Ëµ¥“¹ØÓÚ VMWare Fusion”£¬¼´¿ÉÉó²éÄ¿½ñÓ¦ÓÃÈí¼þµÄ°æ±¾¡£

ËÄ¡¢Îó²î·À»¤
4.1 ¹Ù·½Éý¼¶
ÏÖÔÚ¹Ù·½ÒÑÔÚ×îа汾ÖÐÐÞ¸´Á˸ÃÎó²î£¬ÇëÊÜÓ°ÏìµÄÓû§Éý¼¶°æ±¾¾ÙÐзÀ»¤£¬ÏÂÔØÁ´½ÓÓë˵Ã÷ÎĵµÈçÏ£º
| ÐÞ¸´°æ±¾ | ÏÂÔØÁ´½Ó | ˵Ã÷Îĵµ |
| VMware Fusion 11.5.2 | https://www.vmware.com/go/downloadfusion | https://docs.vmware.com/en/VMware-Fusion/index.html |
| VMware Horizon Client 5.4.0 | https://my.vmware.com/web/vmware/info/slug/desktop_end_user_computing/vmware_horizon_clients/5_0 | https://docs.vmware.com/en/VMware-Horizon-Client/index.html |
| VMware Remote Console 11.0.1 for Mac | https://my.vmware.com/web/vmware/details?downloadGroup=VMRC1101&productId=742 | https://docs.vmware.com/en/VMware-Remote-Console/index.html |

¾ÅÓÎÀϸçÔÆ







