CVE Database
/

CVE-2025-62627

Back to search

CVE-2025-62627

Published: May 13, 2026

Modified: May 14, 2026

PUBLISHED

Description

An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM to read kernel memory or co-located guest VM memory, potentially resulting in loss of confidentiality or availability.

VendorProductVersions

AMD

ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products

unaffected
ESXi 8.0U3i, included in VCF 5.2.3.0 or 9.0.2 releases

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now