VMware could not fix a vulnerability that has been disclosed for eleven months

Threat Advisories

VMware could not fix a vulnerability that has been disclosed for eleven months

Threat Level
Vulnerability Report

For a detailed threat advisory, download the pdf file here

Summary

VMware disclosed a vulnerability in November 2021 that has not been fixed as of October 2022. VMware initially patched this vulnerability, but later discovered that it did not fix it. The vulnerability can be exploited by an attacker to escalate to a SYSTEM.