CVE-2019-5098: High severity vmware workstation and esxi vulnerability
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.29010. A specially crafted pixel shader can cause out-of-bounds memory read. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-5098?
CVE-2019-5098 is an exploitable out-of-bounds read vulnerability in the AMD ATIDXX64.DLL driver.
How does CVE-2019-5098 impact VMware Workstation 15.0.0?
VMware Workstation 15.0.0 is affected by CVE-2019-5098 and can be exploited by a specially crafted shader file.
Is Microsoft Windows 10 vulnerable to CVE-2019-5098?
No, Microsoft Windows 10 is not vulnerable to CVE-2019-5098.
How can I fix CVE-2019-5098 in the AMD Radeon RX 550 firmware version 26.20.13001.29010?
To fix CVE-2019-5098 in the AMD Radeon RX 550 firmware version 26.20.13001.29010, update to the latest firmware version provided by AMD.
What is the severity rating of CVE-2019-5098?
CVE-2019-5098 has a severity rating of 8.6 (high).