ZeroHour
Cisco Talospublished ()ingested

Vulnerability Spotlight: Denial-of

highVulnerability exploited in the wildimportance 60CVE-2019-5536

Vulnerabilities mentionedAll →

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2019-5536
VMware ESXi (6.7 before ESXi670-201908101-SG and 6.5 before ESXi650-201910401-SG), Workstation (15.x before 15.5.0) and Fusion (11.x before 11.5.0) contain a de

VMware ESXi (6.7 before ESXi670-201908101-SG and 6.5 before ESXi650-201910401-SG), Workstation (15.x before 15.5.0) and Fusion (11.x before 11.5.0) contain a denial-of-service vulnerability in the shader functionality. Successful exploitation of this issue may allow attackers with normal user privileges to create a denial-of-service condition on their own VM. Exploitation of this issue require an attacker to have access to a virtual machine with 3D graphics enabled. It is not enabled by default on ESXi and is enabled by default on Workstation and Fusion.

NVD description · AI analysis pending
6.52%
  • vmware fusion
  • vmware workstation
  • vmware esxi
Full article253 words · extracted from blog.talosintelligence.com · click to collapse

Monday, October 28, 2019 09:46

Piotr Bania of Cisco Talos discovered this vulnerability.

Executive summary VMware Fusion 11 contains an exploitable denial-of-service vulnerability. VMWare Fusion is an application for Mac operating systems that allows users to run other OSs in a virtual environment, such as Windows and Linux. An attacker could exploit this vulnerability by supplying a malformed pixel shader inside of a VMware guest OS.


In accordance with our coordinated disclosure policy, Cisco Talos worked with VMware to ensure that these issues are resolved and that an update is available for affected customers.

Vulnerability details VMware Fusion 11 shader functionality denial-of-service (TALOS-2019-0848/CVE-2019-5536)

An exploitable denial-of-service vulnerability exists in VMware Fusion 11.1.0 (13668589). A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from a VMware guest and the VMware host will be affected, leading to a VMware fusion process crash on the host.

Read the complete vulnerability advisory here for additional information.

Versions tested Talos tested and confirmed that this vulnerability exists in VMware Workstation 11.1.0 (13668589) with Windows 10 x64 as operating as the guest VM and macOS Mojave as the host.

Coverage The following SNORTⓇ rules will detect exploitation attempts. Note that additional rules may be released at a future date and current rules are subject to change pending additional vulnerability information. For the most current rule information, please refer to your Firepower Management Center or Snort.org.

Snort Rules: 50502, 50503

Text extracted automatically; images, tables and formatting may be missing. Original: https://blog.talosintelligence.com/vuln-spotlight-vmware-fusion-oct-19-dos/