VMware Tools for Windows update addresses an authentication bypass vulnerability (CVE-2025-22230)
VMware released security advisory VMSA-2025-0005 with High severity affecting VMware Tools for Windows.
The fix is available in VMware Tools v12.5.1 for Windows available in the VSS-Windows Content Library as Item VMware_Tools_for_Windows_12.5.1.24649672 (see Windows section below).
How-To Remediate
Windows
ITS Private Cloud CLI
Mount the VMware Tools ISO
VMware_Tools_for_Windows_12.5.1.24649672with thevss-cli:vss-cli compute vm set <id> cd up --backing VMware_Tools_for_Windows_12.5.1.24649672 1Proceed with the installation in the OS.
ITS Private Cloud Portal
Login to the
https://cloud-portal.eis.utoronto.caLook for your VM and click on the
Editbutton.Mount the VMWare Tools ISO
VMware_Tools_for_Windows_12.5.1.24649672.Proceed with the installation in the OS.
References
University of Toronto - Since 1827