Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-41238

30
FAUCET Score

CVE-2025-41238 is a critical heap-overflow vulnerability in the PVSCSI controller affecting VMware ESXi, Workstation, and Fusion. An attacker with local administrative privileges on a virtual machine can exploit this to execute code as the VMX process on the host. Rated 9.3 Critical, the attack requires local access but can lead to full compromise of the host system on Workstation/Fusion, while ESXi exploitation is contained within the VMX sandbox and limited to unsupported configurations. Although not actively exploited in the wild (KEV: No), this vulnerability has garnered significant community attention with 13 mentions and 2 media articles, indicating high awareness, and was demonstrated at Pwn2Own.

Impacted Technologies

VendorProductVersion(s)CPE
VMwareCloud Foundation
5.x, 4.5.xCNA affecteddefault unaffected
VMwareESXi
>= 7.0, < ESXi70U3w-24784741, >= 8.0, < ESXi80U2e-24789317, >= 8.0, < ESXi80U3f-24784735CNA affecteddefault unaffected
VMwareFusion
>= 13.x, < 13.6.4CNA affecteddefault unaffected
VMwareTelco Cloud Infrastructure
3.x, 2.xCNA affecteddefault unaffected
VMwareTelco Cloud Platform
5.x, 4.x, 3.x, 2.xCNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 3.1

9.3CRITICAL

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.5
Impact Score
6.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.39%
Probability of exploitation in next 30 days
EPSS Percentile
32.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0039 is in the 82nd percentile among its peer group of 79 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.7 Bluesky, 0.3 Mastodon, and 1.0 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

feathersjspatch availablevia llm_extracted
Fixed in: ESXi 7.0U3w or ESXi 8.0U3f or greater
View patch
sophospatch availablevia llm_extracted
Fixed in: ESXi 7.0U3w or ESXi 8.0U3f or greater
View patch

Vendor Advisories (2)

sophosllm-sophos-75ce555a0588dd2dCRITICAL

Multiple vulnerabilities in VMware ESXi

Jul 15, 2025
feathersjsllm-feathersjs-3d64414f41ba1ba8CRITICAL

Multiple vulnerabilities in VMware ESXi (VMSA-2025-0013)

References

support.broadcom.com / web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35877