High severity8.8NVD Advisory· Published Sep 15, 2017· Updated May 13, 2026
CVE-2017-4924
CVE-2017-4924
Description
VMware ESXi (ESXi 6.5 without patch ESXi650-201707101-SG), Workstation (12.x before 12.5.7) and Fusion (8.x before 8.5.8) contain an out-of-bounds write vulnerability in SVGA device. This issue may allow a guest to execute code on the host.
Affected products
10cpe:2.3:o:vmware:esxi:6.5:-:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:vmware:esxi:6.5:-:*:*:*:*:*:*
- cpe:2.3:o:vmware:esxi:6.5:650-201701001:*:*:*:*:*:*
- cpe:2.3:o:vmware:esxi:6.5:650-201703001:*:*:*:*:*:*
- cpe:2.3:o:vmware:esxi:6.5:650-201703002:*:*:*:*:*:*
- cpe:2.3:o:vmware:esxi:6.5:650-201704001:*:*:*:*:*:*
- (no CPE)range: 6.5 without patch ESXi650-201707101-SG
- Range: 12.x before 12.5.7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- 0patch.blogspot.com/2017/10/micropatching-hypervisor-with-running.htmlnvdExploitThird Party Advisory
- www.securityfocus.com/bid/100843nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039365nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039366nvdThird Party AdvisoryVDB Entry
- www.vmware.com/security/advisories/VMSA-2017-0015.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.