CVE-2022-31681: Null Pointer Dereference
VMware ESXi contains a null-pointer deference vulnerability. A malicious actor with privileges within the VMX process only, may create a denial of service condition on the host.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-31681?
CVE-2022-31681 is a null-pointer deference vulnerability in VMware ESXi that can be exploited by a malicious actor to create a denial of service condition on the host.
Which software is affected by CVE-2022-31681?
VMware ESXi versions 7.0 and VMware Cloud Foundation versions 4.2 to 4.3.1.1 and 4.4 to 4.4.1.1 are affected by CVE-2022-31681.
What is the severity of CVE-2022-31681?
CVE-2022-31681 has a severity rating of 6.5 (medium).
How can a malicious actor exploit CVE-2022-31681?
A malicious actor with privileges within the VMX process can exploit CVE-2022-31681 to create a denial of service condition on the host.
Where can I find more information about CVE-2022-31681?
You can find more information about CVE-2022-31681 at the following reference link: [VMware Security Advisory VMSA-2022-0025](https://www.vmware.com/security/advisories/VMSA-2022-0025.html).