CVE-2025-37186: Local Privilege Escalation Vulnerability in HPE Aruba Networking Virtual Intranet Access (VIA) Client for Linux
A local privilege-escalation vulnerability has been discovered in the HPE Aruba Networking Virtual Intranet Access (VIA) client. Successful exploitation of this vulnerability could allow a local attacker to achieve arbitrary code execution with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37186?
CVE-2025-37186 has been classified as a local privilege escalation vulnerability.
How do I fix CVE-2025-37186?
To fix CVE-2025-37186, ensure you update to the latest version of the HPE Aruba Networking Virtual Intranet Access (VIA) Client.
What systems are affected by CVE-2025-37186?
CVE-2025-37186 affects the HPE Aruba Networking Virtual Intranet Access (VIA) Client for Linux.
What can happen if CVE-2025-37186 is exploited?
Successful exploitation of CVE-2025-37186 could allow an attacker to gain elevated privileges on the affected system.
Who is responsible for patching CVE-2025-37186?
Users of the HPE Aruba Networking Virtual Intranet Access (VIA) Client are responsible for applying updates to mitigate CVE-2025-37186.