Blog | G5 Cyber Security

VMware Authorization Service Haunted by DoS Vulnerability

The vulnerability is caused due to an error in the VMware Authorization Service when processing login requests. It can be exploited to terminate the vmware-authd process via USER or PASS strings containing e.g. xFF characters, sent to TCP port 912. VMWare users are urged to restrict access to the TCP port to trusted users only. In the absence of a patch, users urged to limit access to TCP ports.

Source: https://threatpost.com/vmware-authorization-service-haunted-dos-vulnerability-100909/72199/

Exit mobile version