CVE-2024-37086
published 2024-06-25CVE-2024-37086: VMware ESXi contains an out-of-bounds read vulnerability. A malicious actor with local administrative privileges on a virtual machine with an existing snapshot…
medium6.8CVSS 3.1
AVLACLPRNUINSUCNILAH
VMware ESXi contains an out-of-bounds read vulnerability. A
malicious actor with local administrative privileges on a virtual
machine with an existing snapshot may trigger an out-of-bounds read
leading to a denial-of-service condition of the host.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | cloud_foundation | >= 4.0 < 5.2 | 5.2 |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | esxi | >= 7.0 < ESXi70U3sq-23794019 | ESXi70U3sq-23794019 |
| vmware | esxi | >= 8.0 < ESXi80U3-24022510 | ESXi80U3-24022510 |