VYPR
High severity7.5NVD Advisory· Published Feb 16, 2022· Updated Jun 17, 2026

CVE-2021-22043

CVE-2021-22043

Description

VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled. A malicious actor with access to settingsd, may exploit this issue to escalate their privileges by writing arbitrary files.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:*
    Range: <4.4
  • VMware/Esxi4 versions
    cpe:2.3:o:vmware:esxi:7.0:update_1:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:vmware:esxi:7.0:update_1:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esxi:7.0:update_2:*:*:*:*:*:*
    • cpe:2.3:o:vmware:esxi:7.0:update_3:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.