ZDI-CAN-31293: ZDI-26-495: (Pwn2Own) VMware ESXi VMXNET3 espQueueMask Out-Of-Bounds Write Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of VMware ESXi. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.2. The following CVEs are assigned: CVE-2026-47876.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-31293?
The severity of ZDI-CAN-31293 is rated at 8.2 on the CVSS scale.
How do I fix ZDI-CAN-31293?
To fix ZDI-CAN-31293, ensure that you apply the latest patches provided by VMware for ESXi.
What type of vulnerability is ZDI-CAN-31293?
ZDI-CAN-31293 is a local privilege escalation vulnerability affecting VMware ESXi.
What must an attacker do to exploit ZDI-CAN-31293?
An attacker must first gain the ability to execute high-privileged code on the target guest system to exploit ZDI-CAN-31293.
Which software is affected by ZDI-CAN-31293?
ZDI-CAN-31293 affects installations of VMware ESXi.