CVE-2025-62627
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM to read kernel memory or co-located guest VM memory, potentially resulting in loss of confidentiality or availability.
| CWE | CWE-822 |
| Vendor | amd |
| Product | esxi 8.x and esxi 9.x hosts using amd-pensando dpu products |
| Published | May 13, 2026 |
| Last Updated | May 13, 2026 |
Stay Ahead of the Next One
Get instant alerts for amd esxi 8.x and esxi 9.x hosts using amd-pensando dpu products
Be the first to know when new unknown vulnerabilities affecting amd esxi 8.x and esxi 9.x hosts using amd-pensando dpu products are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
AMD / ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products
All versions affected References
Credits
Reported through AMD Bug Bounty Program