top of page
perceptive_background_267k.jpg

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a vir…

Published:

29 juli 2026 om 22:00:00

Alert date:

30 juli 2026 om 14:01:29

Source:

nvd.nist.gov

Click to open the original link from this advisory

Cloud & Virtualization, Zero-Day Vulnerabilities

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine using the VMXNET3 adapter can exploit this vulnerability to execute arbitrary code on the host system. This represents a guest-to-host escape scenario, which is considered high severity in virtualization environments. Only virtual machines using the VMXNET3 adapter are affected; other virtual network adapter types are not impacted. The vulnerability has been assigned CVE-2026-47876 and is tracked by NVD and Broadcom security advisories.

Technical details

Mitigation steps:

Affected products:

VMware ESX
VMXNET3 virtual network adapter

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page