VMware ESXi Out-of-Bounds Read Vulnerability Could Lead to Denial of Service
CVE-2024-37086

6.8MEDIUM

Key Information:

Vendor

VMware

Vendor
CVE Published:
25 June 2024

Badges

📰 News Worthy

What is CVE-2024-37086?

VMware ESXi contains an out-of-bounds read vulnerability. A malicious actor with local administrative privileges on a virtual machine with an existing snapshot may trigger an out-of-bounds read leading to a denial-of-service condition of the host.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

ESXi 8.0

ESXi 7.0

VMware Cloud Foundation 5.x

News Articles

VMware ESXi Vulnerability Allows Attackers to Bypass Authentication

These vulnerabilities, identified as CVE-2024-37085, CVE-2024-37086, and CVE-2024-37087, pose significant risks to organizations using VMware ESXi for their virtualized environments.

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 📰

    First article discovered by CybersecurityNews

  • Vulnerability published

  • Vulnerability Reserved

.