CVE-2024-22270: Infoleak
VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor memory from a virtual machine.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22270?
CVE-2024-22270 is considered a medium severity vulnerability due to its information disclosure potential.
How do I fix CVE-2024-22270?
To fix CVE-2024-22270, users should update VMware Workstation and Fusion to the latest versions provided by VMware.
What type of vulnerability is CVE-2024-22270?
CVE-2024-22270 is an information disclosure vulnerability related to the Host Guest File Sharing functionality.
Who is affected by CVE-2024-22270?
CVE-2024-22270 affects users with local administrative privileges on virtual machines running VMware Workstation and Fusion.
Can CVE-2024-22270 be exploited remotely?
No, CVE-2024-22270 requires local administrative access on a virtual machine for exploitation.