ELSA-2023-7277

ELSA-2023-7277 - open-vm-tools security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-11-16

Description


[12.2.5-3.0.1.2]
- Address CVE-2023-34058 - BZ 2246963 - SAML token signature token bypass.
- Address CVE-2023-34059 - BZ 2246962 - vmware-user-suid-wrapper


Related CVEs


CVE-2023-34058
CVE-2023-34059

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) open-vm-tools-12.2.5-3.0.1.el9_3.2.src.rpmc4165599a1d7dcb44c0f2e493474708e-ol9_aarch64_appstream
open-vm-tools-12.2.5-3.0.1.el9_3.2.aarch64.rpmb3fe680300a803d4e3279611d2737e14-ol9_aarch64_appstream
open-vm-tools-desktop-12.2.5-3.0.1.el9_3.2.aarch64.rpme2c02d66b4001c700d9d995f64827dec-ol9_aarch64_appstream
open-vm-tools-test-12.2.5-3.0.1.el9_3.2.aarch64.rpm9ba503603e54eb990ff705207ac78030-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) open-vm-tools-12.2.5-3.0.1.el9_3.2.src.rpmc4165599a1d7dcb44c0f2e493474708e-ol9_x86_64_appstream
open-vm-tools-12.2.5-3.0.1.el9_3.2.x86_64.rpm1090452da3a482a05734e2958a380516-ol9_x86_64_appstream
open-vm-tools-desktop-12.2.5-3.0.1.el9_3.2.x86_64.rpm72e3c5175911a55e461cf6f2b500ca57-ol9_x86_64_appstream
open-vm-tools-salt-minion-12.2.5-3.0.1.el9_3.2.x86_64.rpm3071ded53baccc2729d9858600626eb6-ol9_x86_64_appstream
open-vm-tools-sdmp-12.2.5-3.0.1.el9_3.2.x86_64.rpm00f8ed5d05c7682051cdd6497ff8664c-ol9_x86_64_appstream
open-vm-tools-test-12.2.5-3.0.1.el9_3.2.x86_64.rpma3fa7bf4319dff6c68d16239efcd1853-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete