Skip to content

Broadcom Patches Six VMware Vulnerabilities, Including Actively Exploited Zero-Day

China-linked hackers are exploiting a critical VMware flaw. Broadcom's urgent patches protect against privilege escalation and other serious issues.

In the image there is a bug on the white surface.
In the image there is a bug on the white surface.

Broadcom Patches Six VMware Vulnerabilities, Including Actively Exploited Zero-Day

Broadcom has released urgent security patches for several VMware vulnerabilities, including a zero-day actively exploited by a China-linked threat actor. The most severe vulnerability, CVE-2025-41244, has a CVSS score of 7.8 and is considered important.

UNC5174, a China-linked threat actor, has been exploiting CVE-2025-41244 in the wild since mid-October 2024. This vulnerability allows local users to escalate privileges to root via VMware Tools and Aria Operations, impacting multiple VMware products and versions. Broadcom patched six VMware flaws in total, including CVE-2025-41244, an Information Disclosure vulnerability (CVE-2025-41245), and an Improper Authorization vulnerability (CVE-2025-41246).

Users are advised to apply the latest security patches immediately to protect against these vulnerabilities. The active exploitation of CVE-2025-41244 by UNC5174 underscores the importance of prompt action.

Read also:

Latest