This security bulletin contains one low risk vulnerability.
CWE-125 - Out-of-bounds Read
Exploit availability: NoDescription
The vulnerability allows an adjacent attacker to obtain potentially sensitive information or gain elevated privileges on the target system.
The vulnerability exists due to out-of-bounds memory read error in HGFS. An adjacent attacker can obtain potentially sensitive information or gain elevated privileges.Mitigation
Update to version 10.3.0.Vulnerable software versions
VMware Tools: 10.0.0 - 10.2.5
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the local network (LAN).
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.