CVE-2025-41227: Denial-of-Service Vulnerability
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory of the host process leading to a denial-of-service condition.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41227?
CVE-2025-41227 is categorized as a denial-of-service vulnerability affecting VMware products.
How does CVE-2025-41227 affect VMware ESXi, Workstation, and Fusion?
CVE-2025-41227 allows a malicious actor to exhaust the memory of the host process through specific guest options.
Who is affected by CVE-2025-41227?
Any non-administrative user within a guest operating system can potentially exploit CVE-2025-41227.
How do I fix CVE-2025-41227?
To mitigate CVE-2025-41227, apply patches provided by VMware for ESXi, Workstation, and Fusion.
What are the potential impacts of exploiting CVE-2025-41227?
Exploitation of CVE-2025-41227 can lead to denial of service on the host system, affecting its availability.