Skip to main content

Vendor archive

vmware CVEs

Beta · best-effort

1,014 CVEs tagged to vendor vmware145 Critical, 407 High, 418 Medium, 44 Low, 0 Unrated.

CVE-2022-31704

Published Jan 26, 2023

The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance…

CVSS 9.8 · Critical
evidence mentions
10
Buzz score
38.5
Vendor/product tagsBeta · best-effort

CVE-2023-22602

Published Jan 14, 2023

When using Apache Shiro before 1.11.0 together with Spring Boot 2.6+, a specially crafted HTTP request may cause an authentication bypass. The authentication bypass occurs when S…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-42264

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause the use of an out-of-range pointer offset, whic…

CVSS 7.1 · High

CVE-2022-42263

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an Integer overflow may lead to denial of service or information disclosure.

CVSS 7.1 · High

CVE-2022-42262

Published Dec 30, 2022

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may…

CVSS 7.1 · High

CVE-2022-42261

Published Dec 30, 2022

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where an input index is not validated, which may lead to buffer overrun, which in turn may…

CVSS 7.8 · High

CVE-2022-42260

Published Dec 30, 2022

NVIDIA vGPU Display Driver for Linux guest contains a vulnerability in a D-Bus configuration file, where an unauthorized user in the guest VM can impact protected D-Bus endpoints,…

CVSS 7.8 · High

CVE-2022-42259

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denial of service.

CVSS 4.4 · Medium

CVE-2022-42258

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to denial of service, data tampering, or info…

CVSS 5.3 · Medium

CVE-2022-42257

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an integer overflow may lead to information disclosure, data tampering or…

CVSS 5.3 · Medium

CVE-2022-42254

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bounds array access may lead to denial of service, data tamperin…

CVSS 5.3 · Medium

CVE-2022-34684

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an off-by-one error may lead to data tampering or information disclosure.

CVSS 5.3 · Medium

CVE-2022-34680

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an integer truncation can lead to an out-of-bounds read, which may lead to den…

CVSS 5.5 · Medium

CVE-2022-34677

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged regular user can cause an integer to be truncated, which may l…

CVSS 5.5 · Medium

CVE-2022-34674

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where a helper function maps more physical pages than were requested, which may lead…

CVSS 6.8 · Medium

CVE-2022-34670

Published Dec 30, 2022

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged regular user can cause truncation errors when casting a primit…

CVSS 7.8 · High

CVE-2022-31708

Published Dec 16, 2022

vRealize Operations (vROps) contains a broken access control vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVS…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31707

Published Dec 16, 2022

vRealize Operations (vROps) contains a privilege escalation vulnerability. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVS…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 251-275 of 1,014 CVEsPage 11 of 41