-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 May 2025 15:22:02 +0200 Source: open-vm-tools Binary: open-vm-tools open-vm-tools-containerinfo open-vm-tools-containerinfo-dbgsym open-vm-tools-dbgsym open-vm-tools-desktop open-vm-tools-desktop-dbgsym open-vm-tools-dev open-vm-tools-sdmp open-vm-tools-sdmp-dbgsym Architecture: i386 Version: 2:12.2.0-1+deb12u3 Distribution: bookworm-security Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Bernd Zeimetz Description: open-vm-tools - Open VMware Tools for virtual machines hosted on VMware (CLI) open-vm-tools-containerinfo - Open VMware Tools for VMs hosted on VMware (Service Discovery Plu open-vm-tools-desktop - Open VMware Tools for virtual machines hosted on VMware (GUI) open-vm-tools-dev - Open VMware Tools for virtual machines hosted on VMware (developm open-vm-tools-sdmp - Open VMware Tools for VMs hosted on VMware (Service Discovery Plu Closes: 1105159 Changes: open-vm-tools (2:12.2.0-1+deb12u3) bookworm-security; urgency=medium . * [df2a118] Fixing an insecure file handling vulnerability. It allowed a malicious actor with non-administrative privileges on a guest VM to tamper the local files to trigger insecure file operations within that VM. VMSA-2025-0007 CVE-2025-22247 (Closes: #1105159) Checksums-Sha1: e342d5ba26b9e1ca68ee6e498aad2f7aaf7e4db4 3074536 open-vm-tools-containerinfo-dbgsym_12.2.0-1+deb12u3_i386.deb 8a41d6c81b434f0936934166dc8ca60359f81ee2 180304 open-vm-tools-containerinfo_12.2.0-1+deb12u3_i386.deb 5f37fe3cef3e23ed21b6446c48ff774b2b871221 2395400 open-vm-tools-dbgsym_12.2.0-1+deb12u3_i386.deb 8f93dd1b71fb6bcc791f46313bb2f3df1e1a3bd1 1467856 open-vm-tools-desktop-dbgsym_12.2.0-1+deb12u3_i386.deb b31bd9ea5c8ee97104bd08cf12d0ee0a6b721163 165908 open-vm-tools-desktop_12.2.0-1+deb12u3_i386.deb 3757f4b46fc12acbf1fb545e1bedc38df54b0074 550592 open-vm-tools-dev_12.2.0-1+deb12u3_i386.deb 94699d96cc88a91db376f9b368bcd55164701a7c 20940 open-vm-tools-sdmp-dbgsym_12.2.0-1+deb12u3_i386.deb e73b93048caecb2955931105b61b2d2d6b584da0 26148 open-vm-tools-sdmp_12.2.0-1+deb12u3_i386.deb 8bd2ba9e7bb91f5c5f8ec18b2e74b7cf826b986f 24924 open-vm-tools_12.2.0-1+deb12u3_i386-buildd.buildinfo 68ccbfe4f221b0c581a186fa835fc4f4358af1bc 739140 open-vm-tools_12.2.0-1+deb12u3_i386.deb Checksums-Sha256: d501f409bbfadea8c576f26cc1a0fa95e4554dedf2119bede945f4a5bad5ed49 3074536 open-vm-tools-containerinfo-dbgsym_12.2.0-1+deb12u3_i386.deb 8d3de566f82b7f25582ee379432345f8dab5efb0fd7fd479bf84324c6694cca1 180304 open-vm-tools-containerinfo_12.2.0-1+deb12u3_i386.deb c1596930275bafa54ea9a2420b470e6d07d44eb7a77746e1047bd79a795db16f 2395400 open-vm-tools-dbgsym_12.2.0-1+deb12u3_i386.deb b1d089ab1b372f8c535107a7350df58c8e9f8c8c73f17cfca52feade733f1e00 1467856 open-vm-tools-desktop-dbgsym_12.2.0-1+deb12u3_i386.deb cc5074f813d6cfb8788da22dd502504138784dbe6c98b251865569e09a8334eb 165908 open-vm-tools-desktop_12.2.0-1+deb12u3_i386.deb 7263af71a768a6e732337322eeffc22d6cb6ef170b7d45dffc6c0fe296391a14 550592 open-vm-tools-dev_12.2.0-1+deb12u3_i386.deb 7b416ee92156e046d14d723446c1c1352094f1fa6bee17c2fe9b7f691201d17a 20940 open-vm-tools-sdmp-dbgsym_12.2.0-1+deb12u3_i386.deb 9001510299adf14b7fb78c70a64f34320a13d67572bf5e7dd8dd42d32d931f28 26148 open-vm-tools-sdmp_12.2.0-1+deb12u3_i386.deb 2fbbf80403fe265b9b8e52be6480449e47bdd282e8a0528f7d650ebd76999842 24924 open-vm-tools_12.2.0-1+deb12u3_i386-buildd.buildinfo 9f30efbf968ccb1020eda397f62125350affe4fc7229f01d70c336784e1bc42c 739140 open-vm-tools_12.2.0-1+deb12u3_i386.deb Files: 578150263d1a627ebccdd4474d0de619 3074536 debug optional open-vm-tools-containerinfo-dbgsym_12.2.0-1+deb12u3_i386.deb e48065776005f01f78ac24a053867bc1 180304 admin optional open-vm-tools-containerinfo_12.2.0-1+deb12u3_i386.deb 92807acf2bda11993b17f1685871a47d 2395400 debug optional open-vm-tools-dbgsym_12.2.0-1+deb12u3_i386.deb 05af20a3ae768f177913d34fac7b0a01 1467856 debug optional open-vm-tools-desktop-dbgsym_12.2.0-1+deb12u3_i386.deb f9761adb640f0c81d21ee72651414d9d 165908 admin optional open-vm-tools-desktop_12.2.0-1+deb12u3_i386.deb 8e3541619fd89cd7f814fb318fe825ec 550592 devel optional open-vm-tools-dev_12.2.0-1+deb12u3_i386.deb 53ca67690b22ec1fe269f3effb41c20d 20940 debug optional open-vm-tools-sdmp-dbgsym_12.2.0-1+deb12u3_i386.deb 5a0900334d60d4f4a48f43a126afaa1f 26148 admin optional open-vm-tools-sdmp_12.2.0-1+deb12u3_i386.deb aebddb5135aa2c8bd18d63582bb36c84 24924 admin optional open-vm-tools_12.2.0-1+deb12u3_i386-buildd.buildinfo 08eaef10ea172529ba763a388a4868ac 739140 admin optional open-vm-tools_12.2.0-1+deb12u3_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEaPzFtKPtF0JrKPV5iZlfn74WV6kFAmgifhcACgkQiZlfn74W V6nOXw//SrTvZpYnzbL+JCpERpjAhWRE20RQd04VLPapLVyr/B9JnGPcwrO8Qzy/ P5duH/BuRpP6OQSVFdK54b3UsZ0wM61YOIkcUIfvfk5ZDXLhXZSIovRGp/23VCQy 8zhjZIbLWgHVVlTqwt5pU9L+1hi07HPTp2dOXozK0dSWPoI48Ch5vtysDhN3Qtw7 8Kea39txajPhdZT0vxqcobJwV0iNdlhN1sxbvXP1JPsTGBNRY5NpmD7PXjXVhjbw +PZ6dZHXOGvQU8a7Sr2tURD3u6pie/F1wg8WklNMbgrzVQhcbADaUekQxgYxDgyV 1vR7soL0jkgdH0WUzp+4446k213Wnjh3DX9YX7Qr4l55hPvZAaw2da3xjW7PD3UL VhwPQzmFO9B9Qxj4Iu1EMjHwKb3XLdNdabVvwdbxR55OB6iggZ1LfDenNwnKBwwJ Spa9ARtHDxQXuHdBW6h1RKUXZE38qexuKqg6yztzFrzd+tGToDOrcS7PtRZQtf9c KIiomMClKp8KdA841F/d8yiJk+0re524QxiAgxBuKDNxJTxDnt0cZtX6Tc0b3L15 pq5O+dl0f9h4b9sm6gTJpFNihO13xyCorJ99J80rXwKwRZ/AlTQoQ++HlIgcbwfQ iVGrvwhsNZIUwKRHC+MjBa1k3vqv0XSNG4cr1szJtgaRxZP30YE= =wZZK -----END PGP SIGNATURE-----