Rewterz

Rewterz Threat Alert – FASTCash/Lazarus Targeting Banks in Russia

March 18, 2019
Rewterz

Rewterz Threat Advisory – Red Hat Update for Kernel

March 18, 2019

Rewterz Threat Advisory – VMWare Workstation Player Multiple Privilege Escalation Vulnerabilities

Severity

Medium

Analysis Summary

Multiple vulnerabilities have been reported in VMWare Workstation Player, which can be exploited by malicious, local users to gain escalated privileges.

An error related to handling paths when creating the VMX process can be exploited to gain otherwise restricted privileges.
An error related to handling COM classes can be exploited to gain otherwise restricted privileges.
The CVEs assigned to these vulnerabilities are:

CVE-2019-5511 & CVE-2019-5512

Impact

Privilege Escalation

Affected products

VMware Workstation Player 14.x

Remediation

Update to version 14.1.6.

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.