A security flaw in VMware’s Cloud Foundation, ESXi, Fusion and Workstation platforms could open the way for hypervisor takeover in virtual environments – and a patch is still pending for some users. The issue affects a wide range of virtualization specialist’s portfolio and affects Linux, Windows, and Mac users.
The bug – CVE-2021-22045 – rated high-severity heap-overflow flaw with a CVSS rating of 7.7 out of 10. Heap overflows are memory issues that can cause unexpected behavior by any process that accesses the affected memory area and also data corruption. In some cases can result in remote code execution (RCE).
Read More: Threatpost
For more such updates follow us on Google News ITsecuritywire News