File _patchinfo of Package patchinfo.38688
<patchinfo incident="38688">
<issue tracker="bnc" id="1237180">vmtoolsd and VGAuthd service is disabled by default after reinstall open-vm-tools</issue>
<issue tracker="bnc" id="1237147">containerd 1.7.25 and open-vm-tools</issue>
<issue tracker="bnc" id="1241938">GCC 15 - open-vm-tools package doesn't build</issue>
<issue tracker="bnc" id="1243106">VUL-0: CVE-2025-22247: open-vm-tools: Insecure file handling</issue>
<issue tracker="cve" id="2025-22247"/>
<packager>kallan</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for open-vm-tools</summary>
<description>This update for open-vm-tools fixes the following issues:
Update to 12.5.2:
Security fixes:
- CVE-2025-22247: Fixed Insecure file handling (bsc#1243106)
Other fixes:
- Fixed GCC 15 compile time error (bsc#1241938)
- Fixed building with containerd 1.7.25+ (bsc#1237147)
- Ensure vmtoolsd.service and vgauthd.service are set to enabled by default (bsc#1237180)
Full changelog:
https://github.com/vmware/open-vm-tools/blob/stable-12.5.2/ReleaseNotes.md
https://github.com/vmware/open-vm-tools/blob/stable-12.5.2/open-vm-tools/ChangeLog
</description>
</patchinfo>