CVE-2020-3950: high-severity vulnerability in VMware Fusion, VMware Remote Console for Mac…
Published · Updated
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
Apply updates per vendor instructions.
VMware Fusion, Remote Console, and Horizon Client on Mac have a vulnerability that lets regular users gain root (administrator) access through improperly configured system programs. An attacker with a normal user account can exploit this to take full control of the computer.
The vulnerability exists in improper setuid binary configuration in VMware Fusion (11.x < 11.5.2), VMware Remote Console for Mac (≤11.0.0), and Horizon Client for Mac (≤5.3.x). A local attacker with standard user privileges can escalate to root by exploiting this misconfiguration, requiring only local access to the affected system. The attack vector is local with low attack complexity and no user interaction needed.
The full analysis of this CVE is available in Portuguese →