cbcvebase.
CVE-2022-31696
published 2022-12-13

CVE-2022-31696: VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network socket. A malicious actor with local access to ESXi may…

PriorityP342high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.34%
26.3th percentile
VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network socket. A malicious actor with local access to ESXi may exploit this issue to corrupt memory leading to an escape of the ESXi sandbox.

Affected

12 ranges
VendorProductVersion rangeFixed in
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation
vmwarecloud_foundation>= 3.0 < 3.103.10
vmwarecloud_foundation>= 4.0 < 4.3.114.3.11
vmwareesxi
vmwareesxi
vmwareesxi
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.