Local Root Privilege Escalation in HashiCorp Vagrant VMware Fusion Plugin
CVE-2017-16777
7.8HIGH
What is CVE-2017-16777?
The HashiCorp Vagrant VMware Fusion plugin version 5.0.3 poses a risk of local privilege escalation. When this plugin is installed without VMware Fusion, local attackers can exploit a vulnerability involving a suid sudo helper. By creating a malicious application directory, these attackers may gain unauthorized root access, potentially compromising the entire system. Users of the affected version should consider immediate mitigation steps to secure their environments.