VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create a denial of service condition.
References
Configurations
History
05 Mar 2025, 18:25
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
CWE | CWE-787 | |
First Time |
Microsoft
Vmware workstation Vmware fusion Microsoft windows Apple macos Vmware Apple |
|
References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280 - Vendor Advisory | |
CPE | cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:* |
14 May 2024, 19:18
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-14 16:16
Updated : 2025-03-27 15:15
NVD link : CVE-2024-22268
Mitre link : CVE-2024-22268
JSON object : View
Products Affected
apple
- macos
microsoft
- windows
vmware
- fusion
- workstation
CWE
CWE-787
Out-of-bounds Write