Cve-2022-31676

Is Sangoma going to update the open-vm-tools package for the fix for CVE-2022-31676? There’s a vulnerability in the version of open-vm-tools.

So far looks like the only fix is either manually update to a newer version of open-vm-tools from the github repository or remove open-vm-tools and install the VMware Tools

With a little more digging, found that it’s fixed with open-vm-tools version 11.05.el7_9.4 rpm that can be downloaded from the official CentOS7 repository https://centos.pkgs.org/7/centos-updates-x86_64/open-vm-tools-11.0.5-3.el7_9.4.x86_64.rpm.html

Got the RPM and updated to that version, solved the issue

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.