Heap-Based Buffer Overflow in VMware ESXi Ionic Cloud Driver
CVE-2025-62623
8.8HIGH
Key Information:
- Vendor
Amd
- Vendor
- CVE Published:
- 13 May 2026
What is CVE-2025-62623?
A vulnerability exists in the Ionic Cloud Driver for VMware ESXi that leads to a heap-based buffer overflow. This flaw could allow an attacker to escalate privileges, potentially enabling arbitrary code execution and compromising system integrity. It is crucial for users to implement necessary security patches to mitigate this risk and protect their systems.
Affected Version(s)
ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products ESXi 8.0U3i, included in VCF 5.2.3.0 or 9.0.2 releases