Vulnerability Details CVE-2024-22268
VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create a denial of service condition.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.3%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2024-22268
-
cpe:2.3:a:vmware:fusion:13.0.0
-
cpe:2.3:a:vmware:fusion:13.0.1
-
cpe:2.3:a:vmware:fusion:13.0.2
-
cpe:2.3:a:vmware:fusion:13.5
-
cpe:2.3:a:vmware:fusion:13.5.1
-
cpe:2.3:a:vmware:workstation:17.0.0
-
cpe:2.3:a:vmware:workstation:17.0.1
-
cpe:2.3:a:vmware:workstation:17.0.2
-
cpe:2.3:a:vmware:workstation:17.5.0
-
cpe:2.3:a:vmware:workstation:17.5.1
-
-
cpe:2.3:o:microsoft:windows:-