cbcvebase.

Vmware Fusion vulnerabilities

137 known vulnerabilities affecting vmware/fusion.

Total CVEs
137
CISA KEV
2
actively exploited
Public exploits
11
Exploited in wild
6
Severity breakdown
CRITICAL10HIGH64MEDIUM58LOW5

Vulnerabilities

Page 3 of 7
CVE-2018-6974P3HIGHCVSS 8.8≥ 10.0, < 10.1.3v10.x before 10.1.32018-10-16
CVE-2018-6974 [HIGH] CWE-125 CVE-2018-6974: VMware ESXi (6.7 before ESXi670-201810101-SG, 6.5 before ESXi650-201808401-BG, and 6.0 before ESXi60 VMware ESXi (6.7 before ESXi670-201810101-SG, 6.5 before ESXi650-201808401-BG, and 6.0 before ESXi600-201808401-BG), Workstation (14.x before 14.1.3) and Fusion (10.x before 10.1.3) contain an out-of-bounds read vulnerability in SVGA device. This issue may allow a guest to execute code on the host.
nvd
CVE-2024-38811P3HIGHCVSS 7.8≥ 13.0.0, < 13.6≥ 13.x, < 13.62024-09-03
CVE-2024-38811 [HIGH] CWE-20 CVE-2024-38811: VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an inse VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an insecure environment variable. A malicious actor with standard user privileges may exploit this vulnerability to execute code in the context of the Fusion application.
nvd
CVE-2012-2449P3CRITICALCVSS 9.0v4.0v4.0.1+4 more2012-05-04
CVE-2012-2449 [CRITICAL] CWE-119 CVE-2012-2449: VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x through 4.1.2 VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x through 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 do not properly configure the virtual floppy device, which allows guest OS users to cause a denial of service (out-of-bounds write operation and VMX process crash) or possibly execute arbit
nvd
CVE-2012-2450P3CRITICALCVSS 9.0v4.0v4.0.1+3 more2012-05-04
CVE-2012-2450 [CRITICAL] CVE-2012-2450: VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x before 4.1.2, VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x before 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 do not properly register SCSI devices, which allows guest OS users to cause a denial of service (invalid write operation and VMX process crash) or possibly execute arbitrary code on the host OS by l
nvd
CVE-2023-20872P3HIGHCVSS 8.8v13.0.02023-04-25
CVE-2023-20872 [HIGH] CWE-787 CVE-2023-20872: VMware Workstation and Fusion contain an out-of-bounds read/write vulnerability in SCSI CD/DVD devic VMware Workstation and Fusion contain an out-of-bounds read/write vulnerability in SCSI CD/DVD device emulation.
nvd
CVE-2017-4902P3HIGHCVSS 8.8≥ 8.0.0, < 8.5.62017-06-07
CVE-2017-4902 [HIGH] CWE-119 CVE-2017-4902: VMware ESXi 6.5 without patch ESXi650-201703410-SG and 5.5 without patch ESXi550-201703401-SG; Works VMware ESXi 6.5 without patch ESXi650-201703410-SG and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x prior to 12.5.5; and Fusion Pro / Fusion 8.x prior to 8.5.6 have a Heap Buffer Overflow in SVGA. This issue may allow a guest to execute code on the host.
nvd
CVE-2017-4903P3HIGHCVSS 8.8≥ 8.0.0, < 8.5.62017-06-07
CVE-2017-4903 [HIGH] CWE-119 CVE-2017-4903: VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x prior to 12.5.5; and Fusion Pro / Fusion 8.x prior to 8.5.6 have an uninitialized stack memory usage
nvd
CVE-2022-31705P3HIGHCVSS 8.2≥ 12.0.0, < 12.2.52022-12-14
CVE-2022-31705 [HIGH] CWE-787 CVE-2022-31705: VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbo
nvd
CVE-2017-4934P3HIGHCVSS 8.8v8.0.0v8.0.1+13 more2017-11-17
CVE-2017-4934 [HIGH] CWE-119 CVE-2017-4934: VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow vulnerability in VMNAT device. This issue may allow a guest to execute code on the host.
nvd
CVE-2017-4904P3HIGHCVSS 8.8≥ 8.0.0, < 8.5.62017-06-07
CVE-2017-4904 [HIGH] CWE-119 CVE-2017-4904: The XHCI controller in VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi The XHCI controller in VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.0 U1 without patch ESXi600-201703402-SG, and 5.5 without patch ESXi550-201703401-SG; Workstation Pro / Player 12.x prior to 12.5.5; and Fusion Pro / Fusion 8.x prior to 8.5.6 has uninitialized
nvd
CVE-2019-5527P3HIGHCVSS 8.8≥ 11.0.0, < 11.5.02019-10-10
CVE-2019-5527 [HIGH] CWE-416 CVE-2019-5527: ESXi, Workstation, Fusion, VMRC and Horizon Client contain a use-after-free vulnerability in the vir ESXi, Workstation, Fusion, VMRC and Horizon Client contain a use-after-free vulnerability in the virtual sound device. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 8.5.
nvd
CVE-2020-3969P3HIGHCVSS 7.8≥ 11.0.0, < 11.5.5v11.x before 11.5.52020-06-24
CVE-2020-3969 [HIGH] CWE-193 CVE-2020-3969: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an off-by-one heap-overflow vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with 3D graphics enabled may be able to ex
nvd
CVE-2023-20871P3HIGHCVSS 7.8≥ 13.0.0, < 13.0.22023-04-25
CVE-2023-20871 [HIGH] CWE-863 CVE-2023-20871: VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read/write VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read/write access to the host operating system can elevate privileges to gain root access to the host operating system.
nvd
CVE-2023-34045P3HIGHCVSS 7.8≥ 13.0.0, < 13.5≥ 13.x, < 13.52023-10-20
CVE-2023-34045 [HIGH] CWE-269 CVE-2023-34045: VMware Fusion(13.x prior to 13.5) contains a local privilege escalation vulnerability that occurs du VMware Fusion(13.x prior to 13.5) contains a local privilege escalation vulnerability that occurs during installation for the first time (the user needs to drag or copy the application to a folder from the '.dmg' volume) or when installing an upgrade. A malicious actor with local non-administrative user privileges may exploit this vulnerability to esc
nvd
CVE-2024-22267P3HIGHCVSS 8.2≥ 13.0.0, < 13.5.22024-05-14
CVE-2024-22267 [HIGH] CWE-416 CVE-2024-22267: VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A mal VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.
nvd
CVE-2020-3974P3HIGHCVSS 7.8≥ 11.0.0, < 11.5.52020-07-10
CVE-2020-3974 [HIGH] CVE-2020-3974: VMware Fusion (11.x before 11.5.5), VMware Remote Console for Mac (11.x and prior before 11.2.0 ) an VMware Fusion (11.x before 11.5.5), VMware Remote Console for Mac (11.x and prior before 11.2.0 ) and Horizon Client for Mac (5.x and prior before 5.4.3) contain a privilege escalation vulnerability due to improper XPC Client validation. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on
nvd
CVE-2020-3948P3HIGHCVSS 7.8≥ 11.0.0, < 11.5.2v11.x before 11.5.22020-03-16
CVE-2020-3948 [HIGH] CWE-732 CVE-2020-3948: Linux Guest VMs running on VMware Workstation (15.x before 15.5.2) and Fusion (11.x before 11.5.2) c Linux Guest VMs running on VMware Workstation (15.x before 15.5.2) and Fusion (11.x before 11.5.2) contain a local privilege escalation vulnerability due to improper file permissions in Cortado Thinprint. Local attackers with non-administrative access to a Linux guest VM with virtual printing enabled may exploit this issue to elevate their privileges to
nvd
CVE-2024-22273P3HIGHCVSS 7.8≥ 13.0.0, < 13.5.12024-05-21
CVE-2024-22273 [HIGH] CWE-125 CVE-2024-22273: The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulner The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.
nvd
CVE-2020-3960P3HIGHCVSS 8.4≥ 11.0.0, < 11.5.52021-09-15
CVE-2020-3960 [HIGH] CWE-125 CVE-2020-3960: VMware ESXi (6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x VMware ESXi (6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds read vulnerability in NVMe functionality. A malicious actor with local non-administrative access to a virtual machine with a virtual NVMe controller present may be able to read priv
nvd
CVE-2019-5540P3HIGHCVSS 7.7≥ 11.0.0, < 11.5.12019-11-20
CVE-2019-5540 [HIGH] CWE-401 CVE-2019-5540: VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information discl VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information disclosure vulnerability in vmnetdhcp. Successful exploitation of this issue may allow an attacker on a guest VM to disclose sensitive information by leaking memory from the host process.
nvd