CVE-2025-41239 Information

Description

VMware ESXi Workstation Fusion and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.

Reference

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35877

CNNVD-202507-2066 (Published: 2025-07-15)

Share on: