CVE-2016-5329: VMware Fusion

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

VMware Fusion 8.x before 8.5 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine kernel memory addresses and bypass the kASLR protection mechanism via unspecified vectors.

Affected products

  • VMware Fusion: version 8.0.0 only; version 8.0.1 only; version 8.0.2 only; version 8.1.0 only; version 8.1.1 only

Published 2016-12-29. Last modified 2026-06-17.