HomeVmwareCVE-2024-37086

CVE-2024-37086

MEDIUM
6.8CVSS
Published: 2024-06-25
Updated: 2025-06-27
AI Analysis

Description

VMware ESXi contains an out-of-bounds read vulnerability. A malicious actor with local administrative privileges on a virtual machine with an existing snapshot may trigger an out-of-bounds read leading to a denial-of-service condition of the host.

CVSS Metrics

Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Attack Vector
local
Complexity
low
Privileges
none
User Action
none
Scope
unchanged
Confidentiality
none
Integrity
low
Availability
high
Weaknesses
CWE-125

Metadata

Primary Vendor
VMWARE
Published
6/25/2024
Last Modified
6/27/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

vmware : cloud_foundationvmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxivmware : esxi

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2024-37086 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com