CVE-2018-6966: High severity vmware Fusion vulnerability
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator. Successful exploitation of this issue may lead to information disclosure or may allow attackers with normal user privileges to crash their VMs, a different vulnerability than CVE-2018-6965 and CVE-2018-6967.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6966?
CVE-2018-6966 is classified as a medium severity vulnerability.
How do I fix CVE-2018-6966?
To fix CVE-2018-6966, update VMware ESXi to version 6.7-670-201806401-BG or later, and VMware Workstation and Fusion to versions 14.1.2 or later.
What types of attacks can exploit CVE-2018-6966?
CVE-2018-6966 can be exploited for information disclosure or potentially allow attackers with normal user privileges to read sensitive data.
Which software versions are affected by CVE-2018-6966?
CVE-2018-6966 affects VMware ESXi 6.7, Workstation 14.x before 14.1.2, and Fusion 10.x before 10.1.2.
Is CVE-2018-6966 considered a serious vulnerability?
While not classified as critical, CVE-2018-6966 poses a notable risk due to potential information disclosure.