8.8

CVE-2018-6974

VMware ESXi (6.7 before ESXi670-201810101-SG, 6.5 before ESXi650-201808401-BG, and 6.0 before ESXi600-201808401-BG), Workstation (14.x before 14.1.3) and Fusion (10.x before 10.1.3) contain an out-of-bounds read vulnerability in SVGA device. This issue may allow a guest to execute code on the host.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
VMwareWorkstation Version >= 14.0 < 14.1.3
VMwareFusion Version >= 10.0 < 10.1.3
   ApplemacOS X Version-
VMwareESXi Version6.0 Update-
VMwareESXi Version6.0 Update1
VMwareESXi Version6.0 Update1a
VMwareESXi Version6.0 Update1b
VMwareESXi Version6.0 Update2
VMwareESXi Version6.0 Update3
VMwareESXi Version6.0 Update3a
VMwareESXi Version6.0 Update600-201504401
VMwareESXi Version6.0 Update600-201505401
VMwareESXi Version6.0 Update600-201507101
VMwareESXi Version6.0 Update600-201507102
VMwareESXi Version6.0 Update600-201507401
VMwareESXi Version6.0 Update600-201507402
VMwareESXi Version6.0 Update600-201507403
VMwareESXi Version6.0 Update600-201507404
VMwareESXi Version6.0 Update600-201507405
VMwareESXi Version6.0 Update600-201507406
VMwareESXi Version6.0 Update600-201507407
VMwareESXi Version6.0 Update600-201509101
VMwareESXi Version6.0 Update600-201509102
VMwareESXi Version6.0 Update600-201509201
VMwareESXi Version6.0 Update600-201509202
VMwareESXi Version6.0 Update600-201509203
VMwareESXi Version6.0 Update600-201509204
VMwareESXi Version6.0 Update600-201509205
VMwareESXi Version6.0 Update600-201509206
VMwareESXi Version6.0 Update600-201509207
VMwareESXi Version6.0 Update600-201509208
VMwareESXi Version6.0 Update600-201509209
VMwareESXi Version6.0 Update600-201509210
VMwareESXi Version6.0 Update600-201510401
VMwareESXi Version6.0 Update600-201511401
VMwareESXi Version6.0 Update600-201601101
VMwareESXi Version6.0 Update600-201601102
VMwareESXi Version6.0 Update600-201601401
VMwareESXi Version6.0 Update600-201601402
VMwareESXi Version6.0 Update600-201601403
VMwareESXi Version6.0 Update600-201601404
VMwareESXi Version6.0 Update600-201601405
VMwareESXi Version6.0 Update600-201602401
VMwareESXi Version6.0 Update600-201603101
VMwareESXi Version6.0 Update600-201603102
VMwareESXi Version6.0 Update600-201603201
VMwareESXi Version6.0 Update600-201603202
VMwareESXi Version6.0 Update600-201603203
VMwareESXi Version6.0 Update600-201603204
VMwareESXi Version6.0 Update600-201603205
VMwareESXi Version6.0 Update600-201603206
VMwareESXi Version6.0 Update600-201603207
VMwareESXi Version6.0 Update600-201603208
VMwareESXi Version6.0 Update600-201605401
VMwareESXi Version6.0 Update600-201608101
VMwareESXi Version6.0 Update600-201608401
VMwareESXi Version6.0 Update600-201608402
VMwareESXi Version6.0 Update600-201608403
VMwareESXi Version6.0 Update600-201608404
VMwareESXi Version6.0 Update600-201608405
VMwareESXi Version6.0 Update600-201610410
VMwareESXi Version6.0 Update600-201611401
VMwareESXi Version6.0 Update600-201611402
VMwareESXi Version6.0 Update600-201611403
VMwareESXi Version6.0 Update600-201702101
VMwareESXi Version6.0 Update600-201702102
VMwareESXi Version6.0 Update600-201702201
VMwareESXi Version6.0 Update600-201702202
VMwareESXi Version6.0 Update600-201702203
VMwareESXi Version6.0 Update600-201702204
VMwareESXi Version6.0 Update600-201702205
VMwareESXi Version6.0 Update600-201702206
VMwareESXi Version6.0 Update600-201702207
VMwareESXi Version6.0 Update600-201702208
VMwareESXi Version6.0 Update600-201702209
VMwareESXi Version6.0 Update600-201702210
VMwareESXi Version6.0 Update600-201702211
VMwareESXi Version6.0 Update600-201702212
VMwareESXi Version6.0 Update600-201703401
VMwareESXi Version6.0 Update600-201706101
VMwareESXi Version6.0 Update600-201706102
VMwareESXi Version6.0 Update600-201706103
VMwareESXi Version6.0 Update600-201706401
VMwareESXi Version6.0 Update600-201706402
VMwareESXi Version6.0 Update600-201706403
VMwareESXi Version6.0 Update600-201710301
VMwareESXi Version6.5 Update-
VMwareESXi Version6.5 Update2
VMwareESXi Version6.5 Update650-201701001
VMwareESXi Version6.5 Update650-201703001
VMwareESXi Version6.5 Update650-201703002
VMwareESXi Version6.5 Update650-201704001
VMwareESXi Version6.5 Update650-201707101
VMwareESXi Version6.5 Update650-201707102
VMwareESXi Version6.5 Update650-201707103
VMwareESXi Version6.5 Update650-201707201
VMwareESXi Version6.5 Update650-201707202
VMwareESXi Version6.5 Update650-201707203
VMwareESXi Version6.5 Update650-201707204
VMwareESXi Version6.5 Update650-201707205
VMwareESXi Version6.5 Update650-201707206
VMwareESXi Version6.5 Update650-201707207
VMwareESXi Version6.5 Update650-201707208
VMwareESXi Version6.5 Update650-201707209
VMwareESXi Version6.5 Update650-201707210
VMwareESXi Version6.5 Update650-201707211
VMwareESXi Version6.5 Update650-201707212
VMwareESXi Version6.5 Update650-201707213
VMwareESXi Version6.5 Update650-201707214
VMwareESXi Version6.5 Update650-201707215
VMwareESXi Version6.5 Update650-201707216
VMwareESXi Version6.5 Update650-201707217
VMwareESXi Version6.5 Update650-201707218
VMwareESXi Version6.5 Update650-201707219
VMwareESXi Version6.5 Update650-201707220
VMwareESXi Version6.5 Update650-201707221
VMwareESXi Version6.5 Update650-201710001
VMwareESXi Version6.5 Update650-201712001
VMwareESXi Version6.5 Update650-201803001
VMwareESXi Version6.5 Update650-201806001
VMwareESXi Version6.5 Update650-201808001
VMwareESXi Version6.7 Update-
VMwareESXi Version6.7 Update670-201806001
VMwareESXi Version6.7 Update670-201807001
VMwareESXi Version6.7 Update670-201808001
VMwareESXi Version6.7 Update670-201810001
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.191
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2 6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.