VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.
References
Configurations
No configuration.
History
15 Jul 2025, 20:07
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-15 19:15
Updated : 2025-07-15 20:07
NVD link : CVE-2025-41236
Mitre link : CVE-2025-41236
CVE.ORG link : CVE-2025-41236
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write