VYPR
Medium severity6.5NVD Advisory· Published Jan 28, 2022· Updated Jun 17, 2026

CVE-2022-22938

CVE-2022-22938

Description

VMware Workstation (16.x prior to 16.2.2) and Horizon Client for Windows (5.x prior to 5.5.3) contains a denial-of-service vulnerability in the Cortado ThinPrint component. The issue exists in TrueType font parser. A malicious actor with access to a virtual machine or remote desktop may exploit this issue to trigger a denial-of-service condition in the Thinprint service running on the host machine where VMware Workstation or Horizon Client for Windows is installed.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:vmware:horizon:*:*:*:*:*:windows:*:*
    Range: >=5.0.0,<5.5.3
  • cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*range: >=16.0.0,<16.2.2
    • (no CPE)
    • (no CPE)range: <16.2.2
  • Range: <5.5.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.