CVE-2024-22267

9.3CRITICAL

VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to exe

Published: 5/14/2024Updated: 3/14/2025

Description

VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.

AI AnalysisPowered by AI

Affected Products

vmwarefusion
applemacos
-
vmwareworkstation

References