First published: Tue Apr 25 2023(Updated: )
VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Fusion Pro | >=13.0.0<13.0.2 | |
VMware Workstation | >=17.0.0<17.0.2 | |
>=13.0.0<13.0.2 | ||
>=17.0.0<17.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this VMware Workstation and Fusion vulnerability is CVE-2023-20870.
The vulnerability is an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine in VMware Workstation and Fusion.
VMware Workstation and VMware Fusion are affected by this vulnerability.
The severity of the VMware Workstation and Fusion vulnerability is medium.
To fix the vulnerability, update your VMware Workstation or Fusion software to versions 13.0.2 or 17.0.2 respectively.