Vulnerabilities > CVE-2022-22942 - Use After Free vulnerability in VMWare Photon OS 3.0/4.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
vmware
CWE-416

Summary

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

Vulnerable Configurations

Part Description Count
OS
Vmware
2

Common Weakness Enumeration (CWE)