Description
VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19831 | VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. |
References
History
Fri, 14 Mar 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Vmware workstation |
|
| CPEs | cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:* cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Apple
Apple macos Vmware workstation |
Fri, 14 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vmware
Vmware fusion Vmware vmware Workstation |
|
| Weaknesses | CWE-416 | |
| CPEs | cpe:2.3:a:vmware:fusion:13.0.0:*:*:*:*:*:*:* cpe:2.3:a:vmware:vmware_workstation:17.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Vmware
Vmware fusion Vmware vmware Workstation |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2025-03-14T14:56:10.154Z
Reserved: 2024-01-08T18:43:17.078Z
Link: CVE-2024-22267
Updated: 2024-08-01T22:43:34.527Z
Status : Modified
Published: 2024-05-14T16:16:06.610
Modified: 2025-03-14T15:15:39.803
Link: CVE-2024-22267
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD