CVE-2025-41239
- EPSS 0.02%
- Veröffentlicht 15.07.2025 18:35:03
- Zuletzt bearbeitet 15.07.2025 20:07:28
VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to ex...
CVE-2025-41238
- EPSS 0.03%
- Veröffentlicht 15.07.2025 18:34:48
- Zuletzt bearbeitet 15.07.2025 20:07:28
VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controller that leads to an out of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit t...
CVE-2025-41237
- EPSS 0.03%
- Veröffentlicht 15.07.2025 18:34:21
- Zuletzt bearbeitet 15.07.2025 20:07:28
VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this iss...
CVE-2025-41236
- EPSS 0.03%
- Veröffentlicht 15.07.2025 18:34:12
- Zuletzt bearbeitet 15.07.2025 20:07:28
VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this i...
CVE-2025-41227
- EPSS 0.03%
- Veröffentlicht 20.05.2025 14:24:29
- Zuletzt bearbeitet 21.05.2025 20:25:16
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory o...
- EPSS 3.69%
- Veröffentlicht 04.03.2025 12:15:33
- Zuletzt bearbeitet 05.03.2025 02:00:02
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the...
CVE-2024-38811
- EPSS 0.05%
- Veröffentlicht 03.09.2024 10:15:05
- Zuletzt bearbeitet 17.09.2024 13:33:32
VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an insecure environment variable. A malicious actor with standard user privileges may exploit this vulnerability to execute code in the context of the Fusion...
CVE-2024-22273
- EPSS 0.22%
- Veröffentlicht 21.05.2024 18:15:08
- Zuletzt bearbeitet 26.03.2025 16:15:19
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service cond...
- EPSS 0.08%
- Veröffentlicht 14.05.2024 16:16:12
- Zuletzt bearbeitet 27.06.2025 13:36:04
VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information ...
- EPSS 0.08%
- Veröffentlicht 14.05.2024 16:16:10
- Zuletzt bearbeitet 27.06.2025 13:34:58
VMware Workstation and Fusion contain an information disclosure vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor mem...