CVE-2026-47876 PUBLISHED

VMXNET3 out-of-bounds write vulnerability

Assigner: vmware
Reserved: 20.05.2026 Published: 30.07.2026 Updated: 30.07.2026

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVSS Score: 9.3

Product Status

Vendor VMware
Product Cloud Foundation
Versions Default: unaffected
  • Version 9.1.x.x is affected
  • Version 9.0.x.x is affected
  • Version 5.x is affected
Vendor VMware
Product vSphere Foundation
Versions Default: unaffected
  • Version 9.1.x.x is affected
  • Version 9.0.x.x is affected
Vendor VMware
Product ESX
Versions Default: unaffected
  • affected from 9.1.x.x to ESXi-9.1.0.0200-25557999 (excl.)
  • affected from 9.0.x.x to ESXi-9.0.2.0100-25595025 (excl.)
  • affected from 8.0 to ESXi80U3k-25595708 (excl.)
Vendor VMware
Product Telco Cloud Platform
Versions Default: unaffected
  • Version 5.1.x is affected
  • Version 5.0.x is affected

References

Problem Types

  • CWE-787 Out-of-bounds write CWE