{"id":"CVE-2025-22225","title":"VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.","summary":"VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.","severity":"high","cvss":8.2,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H","cwe":["CWE-787","CWE-123"],"vendor":"vmware","product":"cloud_foundation","affected":["esxi = 7.0","esxi = 8.0","cloud_foundation","telco_cloud_infrastructure = 2.2","telco_cloud_infrastructure = 2.5","telco_cloud_infrastructure = 2.7","telco_cloud_infrastructure = 3.0","telco_cloud_platform = 2.0","telco_cloud_platform = 2.5","telco_cloud_platform = 2.7","telco_cloud_platform = 3.0","telco_cloud_platform = 4.0","telco_cloud_platform = 4.0.1","telco_cloud_platform = 5.0"],"published":"2025-03-04","updated":"2026-08-04","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-22225","references":[{"url":"https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25390","label":"security@vmware.com"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-22225","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild"],"epss":0.00997,"epssPercentile":0.60704,"kev":true,"kevDateAdded":"2025-03-04","kevDueDate":"2025-03-25","kevRansomware":true,"exploited":true,"zeroDay":true,"ingestedAt":"2026-08-04T05:36:12.914Z","slug":"CVE-2025-22225","body":"## Overview\n\nVMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.\n\n## Affected\n\n- `esxi = 7.0`\n- `esxi = 8.0`\n- `cloud_foundation`\n- `telco_cloud_infrastructure = 2.2`\n- `telco_cloud_infrastructure = 2.5`\n- `telco_cloud_infrastructure = 2.7`\n- `telco_cloud_infrastructure = 3.0`\n- `telco_cloud_platform = 2.0`\n- `telco_cloud_platform = 2.5`\n- `telco_cloud_platform = 2.7`\n- `telco_cloud_platform = 3.0`\n- `telco_cloud_platform = 4.0`\n- `telco_cloud_platform = 4.0.1`\n- `telco_cloud_platform = 5.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"abyssal","depthScore":75,"depthScoreParts":{"impact":45.1,"likelihood":0.2,"exploitation":25,"ransomware":5},"changes":[]}