Vulnerability Description
VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an out-of-bounds write vulnerability in the e1000e virtual network adapter. Successful exploitation of this issue may lead to code execution on the host from the guest or may allow attackers to create a denial-of-service condition on their own VM.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Workstation | >= 15.0.0, < 15.5.1 |
| Vmware | Fusion | >= 11.0.0, < 11.5.1 |
| Apple | Mac Os X | - |
Related Weaknesses (CWE)
References
- https://www.vmware.com/security/advisories/VMSA-2019-0021.htmlPatchVendor Advisory
- https://www.vmware.com/security/advisories/VMSA-2019-0021.htmlPatchVendor Advisory
FAQ
What is CVE-2019-5541?
CVE-2019-5541 is a vulnerability with a CVSS score of 9.1 (CRITICAL). VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an out-of-bounds write vulnerability in the e1000e virtual network adapter. Successful exploitation of this issue may le...
How severe is CVE-2019-5541?
CVE-2019-5541 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-5541?
Check the references section above for vendor advisories and patch information. Affected products include: Vmware Workstation, Vmware Fusion, Apple Mac Os X.