PT-2023-6348 · Vmware · Vmware Workstation+1
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
VMware Workstation versions prior to 17.5
VMware Fusion versions prior to 13.5
Description
An out-of-bounds read issue exists in the functionality used to share host Bluetooth devices with a virtual machine. A malicious actor with local administrative privileges on a virtual machine can exploit this to read privileged information stored in the hypervisor memory.
Recommendations
Update VMware Workstation to version 17.5 or later.
Update VMware Fusion to version 13.5 or later.
Fix
RCE
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vmware Fusion
Vmware Workstation