VMware Workstation
cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*
- >= 17, <= 25H2
An out-of-bounds write vulnerability has been identified in VMware Workstation 25H1 and earlier versions, across all platforms. This vulnerability allows a user with non-administrative privileges on a guest virtual machine to cause certain VMware Workstation processes to terminate unexpectedly.
Exploitation of this vulnerability leads to a crash of specific VMware Workstation processes on the host machine.
Users can upgrade to VMware Workstation 25H2u1 to address this vulnerability. This version is available through the VMware Workstation Pro 25H2 release notes on the Broadcom website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.