Input validation error in VMware Tools - CVE-2021-21997
Published: June 18, 2021
Vulnerability details
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input within the VM3DMP driver. A local unprivileged user on the guest operating system can trigger panic in the VM3DMP and perform a denial of service (DoS) attack against the guest operating system.
Affected software
Dell Enterprise Hybrid Cloud
How to mitigate CVE-2021-21997
Dell Enterprise Hybrid Cloud - update to 4.1.2