CVE-2026-47876

VMware ESXi enthält eine Schwachstelle für einen Schreibzugriff außerhalb der Grenzen im virtuellen Netzwerkadapter VMXNET3.

criticalEPSS 0.2%

Description

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.

Metrics

9.3
Source: nvd-v3
8.1 %
Low — this CVE sits in the lower 10% of all CVEs scored today.
Show all metrics
Severity
critical
no public PoC known
0.2 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-07-30 12:31 UTC
CWE-787

Weakness classes (CWE)

  • CWE-787Base

    Out-of-bounds Write

    The product writes data past the end, or before the beginning, of the intended buffer.

    cwe.mitre.org →

References & sources

Reanalysis & status changes

Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.

  1. CVE Modified2026-07-30 14:16 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
    • SSVC: {"id":"CVE-2026-47876","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalI…

Linked advisories