First published: Tue Apr 25 2023(Updated: )
VMware Workstation (17.x) and VMware Fusion (13.x) contain a stack-based buffer-overflow vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Fusion Pro | >=13.0.0<13.0.2 | |
VMware Workstation | >=17.0.0<17.0.2 | |
>=13.0.0<13.0.2 | ||
>=17.0.0<17.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2023-20869.
The severity of CVE-2023-20869 is high.
VMware Workstation versions 17.0.0 to 17.0.2 and VMware Fusion versions 13.0.0 to 13.0.2 are affected by CVE-2023-20869.
CVE-2023-20869 is a stack-based buffer-overflow vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine in VMware Workstation and VMware Fusion.
Please refer to the VMware Security Advisory VMSA-2023-0008 for instructions on fixing CVE-2023-20869.