Candidate: CVE-2014-4199 PublicDate: 2014-08-28 15:14:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4199 http://seclists.org/fulldisclosure/2014/Aug/71 Description: vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, allows local users to write to arbitrary files via a symlink attack on a file in /tmp. Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=770809 Priority: low Discovered-by: Assigned-to: CVSS: Patches_open-vm-tools: upstream_open-vm-tools: released (2:9.4.6-1770165-7) precise/esm_open-vm-tools: DNE trusty_open-vm-tools: ignored (out of standard support) trusty/esm_open-vm-tools: needs-triage xenial_open-vm-tools: not-affected (2:10.2.0-3~ubuntu0.16.04.1) esm-infra/xenial_open-vm-tools: not-affected (2:10.2.0-3~ubuntu0.16.04.1) bionic_open-vm-tools: not-affected (2:11.0.5-4ubuntu0.18.04.1) focal_open-vm-tools: not-affected groovy_open-vm-tools: not-affected hirsute_open-vm-tools: not-affected impish_open-vm-tools: not-affected jammy_open-vm-tools: not-affected devel_open-vm-tools: not-affected