Stack-based buffer overflow in VMware Fusion and VMware Workstation - CVE-2026-59347
Published: September 3, 2026
Vulnerability details
The vulnerability allows a remote user to execute code as the virtual machine's VMX process running on the host.
The vulnerability exists due to stack-based buffer overflow in HGFS when handling HGFS operations from a virtual machine. A remote user with administrative privileges on the guest can execute arbitrary code as the virtual machine's VMX process running on the host.
Affected software
VMware Workstation
How to mitigate CVE-2026-59347
VMware Workstation - update to 26H1u1