vulnerability

VMware Player: Vulnerability (VMSA-2024-0006) (CVE-2024-22255)

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:C/I:N/A:N)
Published
03/05/2024
Added
04/25/2024
Modified
02/18/2025

Description

VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability in the UHCI USB controller. A malicious actor with administrative access to a virtual machine may be able to exploit this issue to leak memory from the vmx process.  

Solution

vmware-player-upgrade-17_5_1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.