vulnerability

Amazon Linux AMI 2: CVE-2023-20867: Security patch for open-vm-tools (ALAS-2023-2139)

Severity
3
CVSS
(AV:L/AC:M/Au:M/C:P/I:P/A:N)
Published
Jun 13, 2023
Added
Jul 21, 2023
Modified
Jan 28, 2025

Description

A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

Solution(s)

amazon-linux-ami-2-upgrade-open-vm-toolsamazon-linux-ami-2-upgrade-open-vm-tools-debuginfoamazon-linux-ami-2-upgrade-open-vm-tools-desktopamazon-linux-ami-2-upgrade-open-vm-tools-develamazon-linux-ami-2-upgrade-open-vm-tools-salt-minionamazon-linux-ami-2-upgrade-open-vm-tools-sdmpamazon-linux-ami-2-upgrade-open-vm-tools-test
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.