Cyber Threat Intelligence Conference 2022
November 30, 2022
Rewterz
Rewterz Threat Alert – Sodinokibi Ransomware aka Sodin – Active IOCs
December 1, 2022

Rewterz Threat Advisory – CVE-2022-31693 – VMware Tools for Windows Vulnerability

Severity

Low

Analysis Summary

CVE-2022-31693

VMware Tools for Windows is vulnerable to a denial of service, caused by a flaw in the VM3DMP driver. By sending a specially-crafted request, a local authenticated attacker could exploit this vulnerability to trigger a PANIC in the VM3DMP driver, and results in a denial of service condition in the Windows guest OS.

Impact

Denial of Service

Indicators Of Compromise

CVE

  • CVE-2022-31693

Affected Vendors

VMware

Affected Products

  • VMware Tools for Windows 11.0
  • VMware Tools for Windows 10.0
  • VMware Tools for Windows 12.0

Remediation

Refer to VMware Security Advisory for patch, upgrade or suggested workaround information.

VMware Security Advisory