diff options
author | Yogita Urade <yogita.urade@windriver.com> | 2025-06-19 10:21:16 +0530 |
---|---|---|
committer | Armin Kuster <akuster808@gmail.com> | 2025-07-06 19:23:22 -0400 |
commit | 9c782b2e9dd4f26b40d4d922a78496571ffe317f (patch) | |
tree | c0eb4d25ae169e3dd055d25cec7187645b3a9647 /meta-python/recipes-devtools/python/python3-pandas/0001-pyproject.toml-don-t-pin-dependency-versions.patch | |
parent | 23a02b66f2ae3ae3f7796ea34d71d1e2e658744a (diff) | |
download | meta-openembedded-9c782b2e9dd4f26b40d4d922a78496571ffe317f.tar.gz |
open-vm-tools: fix CVE-2025-22247
VMware Tools contains an insecure file handling vulnerability.
\xa0A malicious actor with non-administrative privileges on a
guest VM may tamper the local files to trigger insecure file
operations within that VM.
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2025-22247
Upstream patch:
https://github.com/vmware/open-vm-tools/blob/CVE-2025-22247.patch/CVE-2025-22247-1230-1250-VGAuth-updates.patch
Signed-off-by: Yogita Urade <yogita.urade@windriver.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python3-pandas/0001-pyproject.toml-don-t-pin-dependency-versions.patch')
0 files changed, 0 insertions, 0 deletions