Heap-Based Buffer Overflow in VMware ESXi's Ionic Cloud Driver
CVE-2025-62624
8.8HIGH
Key Information:
- Vendor
Amd
- Vendor
- CVE Published:
- 13 May 2026
What is CVE-2025-62624?
A heap-based buffer overflow has been identified in the Ionic Cloud Driver for VMware ESXi. This vulnerability can enable an attacker to gain elevated privileges, potentially leading to arbitrary code execution within the affected environment. Such exploitation poses significant risks to system integrity and security, making it imperative for users to apply recommended mitigations and updates.
Affected Version(s)
ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products ESXi 8.0U3i, included in VCF 5.2.3.0 or 9.0.2 releases