VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.
References
Configurations
No configuration.
History
15 Jul 2025, 20:07
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-15 19:15
Updated : 2025-07-15 20:07
NVD link : CVE-2025-41239
Mitre link : CVE-2025-41239
CVE.ORG link : CVE-2025-41239
JSON object : View
Products Affected
No product.
CWE
CWE-908
Use of Uninitialized Resource