CVE-2024-22273
21.05.2024, 18:15
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability.A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.Enginsight
| Vendor | Product | Version |
|---|---|---|
| vmware | cloud_foundation | 4.0 ≤ 𝑥 < 5.1.1 |
| vmware | workstation | 17.0.0 ≤ 𝑥 < 17.5.1 |
| vmware | esxi | 7.0 |
| vmware | esxi | 7.0:beta |
| vmware | esxi | 7.0:update_1 |
| vmware | esxi | 7.0:update_1a |
| vmware | esxi | 7.0:update_1b |
| vmware | esxi | 7.0:update_1c |
| vmware | esxi | 7.0:update_1d |
| vmware | esxi | 7.0:update_1e |
| vmware | esxi | 7.0:update_2 |
| vmware | esxi | 7.0:update_2a |
| vmware | esxi | 7.0:update_2c |
| vmware | esxi | 7.0:update_2d |
| vmware | esxi | 7.0:update_2e |
| vmware | esxi | 7.0:update_3 |
| vmware | esxi | 7.0:update_3c |
| vmware | esxi | 7.0:update_3d |
| vmware | esxi | 7.0:update_3e |
| vmware | esxi | 7.0:update_3f |
| vmware | esxi | 7.0:update_3g |
| vmware | esxi | 7.0:update_3i |
| vmware | esxi | 7.0:update_3j |
| vmware | esxi | 7.0:update_3k |
| vmware | esxi | 7.0:update_3l |
| vmware | esxi | 7.0:update_3m |
| vmware | esxi | 7.0:update_3n |
| vmware | esxi | 7.0:update_3o |
| vmware | esxi | 7.0:update_3p |
| vmware | esxi | 8.0 |
| vmware | esxi | 8.0:a |
| vmware | esxi | 8.0:b |
| vmware | esxi | 8.0:c |
| vmware | esxi | 8.0:update_1 |
| vmware | esxi | 8.0:update_1a |
| vmware | esxi | 8.0:update_1c |
| vmware | esxi | 8.0:update_2 |
| vmware | fusion | 13.0.0 ≤ 𝑥 < 13.5.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration