Multiple vulnerabilities have been discovered in VMware ESXi, Workstation, and Fusion which could allow for local code execution.
ID: d97c546a-df6b-56c1-8c4d-d506d9669768
STIX ID: report--d97c546a-df6b-56c1-8c4d-d506d9669768
Feed Name: CISecurity.org Advisories
Threat Score
Multiple vulnerabilities were identified in VMware ESXi, Workstation, and Fusion—CVE-2025-22224 (TOCTOU leading to out-of-bounds write), CVE-2025-22225 (arbitrary write), and CVE-2025-22226 (information disclosure via out-of-bounds read in HGFS)—which could allow local code execution in the context of an administrator account, enabling installation of programs, data modification or deletion, and creation of accounts with full rights.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
