First published: Tue May 14 2024(Updated: )
VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor memory from a virtual machine.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workstation | ||
VMware Fusion Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-22270 is considered a medium severity vulnerability due to its information disclosure potential.
To fix CVE-2024-22270, users should update VMware Workstation and Fusion to the latest versions provided by VMware.
CVE-2024-22270 is an information disclosure vulnerability related to the Host Guest File Sharing functionality.
CVE-2024-22270 affects users with local administrative privileges on virtual machines running VMware Workstation and Fusion.
No, CVE-2024-22270 requires local administrative access on a virtual machine for exploitation.