← Back

CVE-2024-22267

nvd nist
Published: May 14, 2024Modified: Mar 14, 2025

JSON object

Loading...
8.2
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.5 / Impact: 6.0
Source: NVD

Description

VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.

Affected (2)

2 products
Fusion
Workstation
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 13.0.0 to 13.5.2
Running on/withPlatform Versions
Apple
Macos
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 17.0.0 to 17.5.2

Timeline

No history available yet.