Security Advisory

CVE-2024-22267

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-05-14 12:58:31
Last updated 2025-03-14 14:56:10
Assigner vmware
CVSS score 9.3
State PUBLISHED

Description

VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.