CVE-2025-41239

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/07/2025
Last modified:
15/07/2025

Description

VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.