Security Advisory

CVE-2023-20892

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-06-22 11:47:19
Last updated 2025-02-13 16:39:51
Assigner vmware
State PUBLISHED

Description

The vCenter Server contains a heap overflow vulnerability due to the usage of uninitialized memory in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may exploit heap-overflow vulnerability to execute arbitrary code on the underlying operating system that hosts vCenter Server.