PT-2023-6348 · Vmware · Vmware Workstation+1

·

CVE-2023-34044

·

Published

2023-10-20

·

Updated

2026-06-09

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions VMware Workstation versions prior to 17.5 VMware Fusion versions prior to 13.5
Description An out-of-bounds read issue exists in the functionality used to share host Bluetooth devices with a virtual machine. A malicious actor with local administrative privileges on a virtual machine can exploit this to read privileged information stored in the hypervisor memory.
Recommendations Update VMware Workstation to version 17.5 or later. Update VMware Fusion to version 13.5 or later.

Fix

RCE

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-07060
CVE-2023-34044
ZDI-23-1589

Affected Products

Vmware Fusion
Vmware Workstation