Description
VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain a denial-of-service vulnerability in the RPC handler. Successful exploitation of this issue may allow attackers with normal user privileges to create a denial-of-service condition on their own VM.
References (1)
Core 1
Core References
Patch, Vendor Advisory x_refsource_confirm
https://www.vmware.com/security/advisories/VMSA-2019-0021.html
Scores
CVSS v3
7.7
EPSS
0.0030
EPSS Percentile
53.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Details
Status
published
Products (2)
vmware/fusion
11.0.0 - 11.5.1
vmware/workstation
15.0.0 - 15.5.1
Published
Nov 20, 2019
Tracked Since
Feb 18, 2026