ESXi, Workstation and Fusion are affected by an out-of-bounds read vulnerability that can be exploited by an attacker with non-admin access to a virtual machine to read privileged information from memory. The vulnerability impacts ESXi 6.5 and 6.7, WorkStation 15.x and Fusion 11.x. The flaw resides in the NVMe functionality of the virtualization firm’s products. The company also addressed a high-severity privilege escalation vulnerability, tracked as CVE-2020-3961.”]
Source: https://securityaffairs.co/wordpress/104579/security/vmware-products-flaw.html

