CVE-2019-5542: High severity vmware fusion vulnerability
Published Nov 20, 2019
·Updated
VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain a denial-of-service vulnerability in the RPC handler. Successful exploitation of this issue may allow attackers with normal user privileges to create a denial-of-service condition on their own VM.
Affected Software
2 affected components
VMware Fusion>=11.0.0<11.5.1
VMware Workstation>=15.0.0<15.5.1
Remediation
Event History
Nov 20, 2019
CVE Published
via MITRE·03:11 PM
Data Sourced
via MITRE·03:11 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2019-5542.
2
What software is affected by this vulnerability?
VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) are affected.
3
What is the severity of CVE-2019-5542?
The severity of CVE-2019-5542 is high (7.7 out of 10).
4
What is the impact of this vulnerability?
Successful exploitation of this vulnerability may allow attackers with normal user privileges to create a denial-of-service condition on their own VM.
5
Is there a fix available for this vulnerability?
Yes, upgrading to VMware Workstation 15.5.1 or Fusion 11.5.1 will fix this vulnerability.