CVE-2024-22273: High severity vmware esxi and horizon daas vulnerability
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22273?
CVE-2024-22273 has been classified as a critical vulnerability due to the potential for remote code execution and denial of service.
How do I fix CVE-2024-22273?
To fix CVE-2024-22273, update to the latest version of VMware ESXi, Workstation, or Fusion that contains the security patch.
What software is affected by CVE-2024-22273?
CVE-2024-22273 affects VMware ESXi, Workstation, and Fusion products with storage controllers enabled.
Can CVE-2024-22273 lead to a denial of service?
Yes, exploiting CVE-2024-22273 can create a denial of service condition on the hypervisor.
Who can exploit CVE-2024-22273?
A malicious actor with access to a virtual machine with storage controllers enabled can exploit CVE-2024-22273.