CVE-2019-5544
VMware ESXi and Horizon DaaS OpenSLP Heap-Based Buffer Overflow Vulnerability
⚠ KEVEPSS 96.8%
Description
VMware ESXi and Horizon Desktop as a Service (DaaS) OpenSLP contains a heap-based buffer overflow vulnerability that allows an attacker with network access to port 427 to overwrite the heap of the OpenSLP service to perform remote code execution.
How to fix CVE-2019-5544
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2019-5544 being exploited?
Yes — CVE-2019-5544 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.