7.1

CVE-2023-34044

VMware Workstation( 17.x prior to 17.5) and Fusion(13.x prior to 13.5) contain an out-of-bounds 
read vulnerability that exists in the functionality for sharing host 
Bluetooth devices with the virtual machine. A malicious actor with local administrative privileges on a virtual 
machine may be able to read privileged information contained in 
hypervisor memory from a virtual machine.

Data is provided by the National Vulnerability Database (NVD)
VMwareWorkstation Version >= 17.0.0 < 17.5
VMwareFusion Version >= 13.0.0 < 13.5
   ApplemacOS X Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.182
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6 1.5 4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
security@vmware.com 7.1 2.5 4
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.