CVE-2025-41227
- EPSS 0.16%
- Veröffentlicht 20.05.2025 14:24:29
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory o...
- EPSS 1.74%
- Veröffentlicht 04.03.2025 12:15:33
- Zuletzt bearbeitet 30.10.2025 19:52:41
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the...
CVE-2024-38811
- EPSS 0.28%
- Veröffentlicht 03.09.2024 10:15:05
- Zuletzt bearbeitet 17.09.2024 13:33:32
VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an insecure environment variable. A malicious actor with standard user privileges may exploit this vulnerability to execute code in the context of the Fusion...
CVE-2024-22273
- EPSS 0.17%
- Veröffentlicht 21.05.2024 18:15:08
- Zuletzt bearbeitet 26.03.2025 16:15:19
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service cond...
- EPSS 0.51%
- Veröffentlicht 14.05.2024 16:16:12
- Zuletzt bearbeitet 27.06.2025 13:36:04
VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information ...
- EPSS 0.51%
- Veröffentlicht 14.05.2024 16:16:10
- Zuletzt bearbeitet 27.06.2025 13:34:58
VMware Workstation and Fusion contain an information disclosure vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor mem...
CVE-2024-22268
- EPSS 0.5%
- Veröffentlicht 14.05.2024 16:16:07
- Zuletzt bearbeitet 27.03.2025 15:15:49
VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create...
CVE-2024-22267
- EPSS 0.68%
- Veröffentlicht 14.05.2024 16:16:06
- Zuletzt bearbeitet 14.03.2025 15:15:39
VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process run...
CVE-2024-22255
- EPSS 2.31%
- Veröffentlicht 05.03.2024 18:15:48
- Zuletzt bearbeitet 07.05.2025 15:37:25
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability in the UHCI USB controller. A malicious actor with administrative access to a virtual machine may be able to exploit this issue to leak memory from the vmx process. ...
CVE-2024-22252
- EPSS 3.54%
- Veröffentlicht 05.03.2024 18:15:47
- Zuletzt bearbeitet 27.03.2025 20:15:21
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX pr...