MEDIUM · 4.7

CVE-2019-5535

VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper handling of certain IPv6 packets. VMware has evaluated the severity of this issue to be in the Moderate ...

Vulnerability Description

VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper handling of certain IPv6 packets. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 4.7.

CVSS Score

4.7

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
VmwareFusion>= 11.0.0, < 11.5.0
VmwareWorkstation>= 15.0.0, < 15.5.0

References

FAQ

What is CVE-2019-5535?

CVE-2019-5535 is a vulnerability with a CVSS score of 4.7 (MEDIUM). VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper handling of certain IPv6 packets. VMware has evaluated the severity of this issue to be in the Moderate ...

How severe is CVE-2019-5535?

CVE-2019-5535 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-5535?

Check the references section above for vendor advisories and patch information. Affected products include: Vmware Fusion, Vmware Workstation.