CVE-2023-20870Disclosure(vmware / fusion)

LOWCVSS 6.0 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-125

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fusion
  • workstation

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-02-24); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
fusionworkstation

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-24: 1Mentions · 2026-04-06: 1Mentions · 2026-06-09: 1Technical Details · 2026-02-24: 102-2404-0606-09
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-02-241
Disclosure1
2026-04-061
General1
2026-06-091
Disclosure1
Full discourse3 posts
  • 0xor0ne@0xor0ne
    Disclosure

    Guest-to-host escape in VMware Workstation (CVE-2023-20870/CVE-2023-34044 and CVE-2023-20869) Guest-to-host VM escape in VMware Workstation, stack buffer overflow in Bluetooth sharing leads to code execution (CVE-2023-20870/CVE-2023-34044 and CVE-2023-20869) https://nccgroup.com/media/b2chcbti/vmware-workstation-guest-to-host-escape.pdf Credits Alexander Zaviyalov (@NCCGroupInfosec) #infosec

    Post summary

    The text announces a technical report on guest-to-host escape vulnerabilities in VMware Workstation, detailing a stack buffer overflow in Bluetooth sharing that leads to code execution.

    15021888310.1K
    88.1K followersView on X
  • 0xor0ne@0xor0ne
    Disclosure

    Guest-to-host VM escape in VMware Workstation chaining CVE-2023-20870, CVE-2023-34044 and CVE-2023-20869, by Alexander Zaviyalov (@NCCGroupInfosec). https://nccgroup.com/media/b2chcbti/vmware-workstation-guest-to-host-escape.pdf #infosec https://t.co/TjH7LVMc5F

    Post summary

    The post announces a guest-to-host VM escape in VMware Workstation that chains three CVEs, serving primarily as a vulnerability disclosure.

    1292174868.7K
    92.5K followersView on X
  • 0xor0ne@0xor0ne
    General

    Guest-to-host VM escape in VMware Workstation (CVE-2023-20870/CVE-2023-34044 and CVE-2023-20869) https://nccgroup.com/media/b2chcbti/vmware-workstation-guest-to-host-escape.pdf Credits Alexander Zaviyalov (@NCCGroupInfosec) #infosec https://t.co/O1tLmEWkdX

    Post summary

    NCCGroup releases a report on VMware Workstation guest-to-host escape vulnerabilities (CVE-2023-20870, CVE-2023-34044, CVE-2023-20869), but the tweet contains no details about PoC, exploitation, patches, or technical specifics.

    0200105686.6K
    91.3K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appvmwarefusion---
Appvmwareworkstation---

Explore more