VYPR
High severity7.8CISA KEVNVD Advisory· Published Sep 29, 2025· Updated Jun 17, 2026

CVE-2025-41244

CVE-2025-41244

Description

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

57

Patches

Vulnerability mechanics

References

6

News mentions

1