Description:
VMware has published a security advisory to address multiple vulnerabilities in VMware products. The list of security updates can be found at:
- https://www.vmware.com/security/advisories/VMSA-2022-0022.html
- https://www.vmware.com/security/advisories/VMSA-2022-0023.html
Affected Systems:
- VMware vRealize Operations
- VMware Workstation
Impact:
Depending on the vulnerabilities being exploited, a successful exploitation of the vulnerabilities could lead to information disclosure, privilege escalation or security restriction bypass on the affected system.
Recommendation:
Patches for affected products are available. System administrators of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.
More Information:
- https://www.vmware.com/security/advisories/VMSA-2022-0022.html
- https://www.vmware.com/security/advisories/VMSA-2022-0023.html
- https://www.hkcert.org/security-bulletin/vmware-products-multiple-vulnerabilities_20220810
- https://www.cisa.gov/uscert/ncas/current-activity/2022/08/09/vmware-releases-security-updates
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22983
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31672 (to CVE-2022-31675)