VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create a denial of service condition.
History

Thu, 27 Mar 2025 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Microsoft
Microsoft windows
Vmware
Vmware fusion
Vmware workstation
CPEs cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Microsoft
Microsoft windows
Vmware
Vmware fusion
Vmware workstation

Thu, 27 Mar 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2025-03-27T15:00:11.156Z

Reserved: 2024-01-08T18:43:17.079Z

Link: CVE-2024-22268

cve-icon Vulnrichment

Updated: 2024-08-01T22:43:34.150Z

cve-icon NVD

Status : Modified

Published: 2024-05-14T16:16:07.643

Modified: 2025-03-27T15:15:49.787

Link: CVE-2024-22268

cve-icon Redhat

No data.