Database/Kernel, userspace & hypervisor
VMware Aria Operations / VMware Tools: Local privilege escalation to root inside a managed VM via SDMP service discovery
CVE-2025-41244Kernel, userspace & hypervisorKnown exploitedcurated
Impact
Local privilege escalation to root inside a managed VM via SDMP service discovery; exploited in the wild since Oct 2024 [KEV]
Who can reach it
Local non-admin user inside a managed guest VM
What to do
Update VMware Tools / Aria Operations in guest images; no host reboot
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.