CVE-2019-5541

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
20/11/2019
Last modified:
25/11/2019

Description

VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an out-of-bounds write vulnerability in the e1000e virtual network adapter. Successful exploitation of this issue may lead to code execution on the host from the guest or may allow attackers to create a denial-of-service condition on their own VM.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:* 15.0.0 (including) 15.5.1 (excluding)
cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:* 11.0.0 (including) 11.5.1 (excluding)
cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools