Security Advisory

CVE-2023-20896

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-06-22 12:00:45
Last updated 2025-02-13 16:40:09
Assigner vmware
CVSS score 5.9
State PUBLISHED

Description

The VMware vCenter Server contains an out-of-bounds read vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bounds read by sending a specially crafted packet leading to denial-of-service of certain services (vmcad, vmdird, and vmafdd).