Security-Alerts mailing list archive (security-alerts@yandex-team.ru)
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[security-alerts] FW: [SA23680] VMWare ESX Server Multiple Vulnerabilities
>
> ----------------------------------------------------------------------
>
> TITLE:
> VMWare ESX Server Multiple Vulnerabilities
>
> SECUNIA ADVISORY ID:
> SA23680
>
> VERIFY ADVISORY:
>
>
> CRITICAL:
> Highly critical
>
> IMPACT:
> Security Bypass, Exposure of sensitive information, Privilege
> escalation, DoS, System access
>
> WHERE:
> From remote
>
> OPERATING SYSTEM:
> VMware ESX Server 2.x
>
> VMware ESX Server 3.x
>
>
> DESCRIPTION:
> Some vulnerabilities have been reported in VMWare ESX Server, which
> can be exploited by malicious people to gain knowledge of sensitive
> information, bypass certain security restrictions, cause a DoS
> (Denial of Service), gain escalated privileges, or compromise a
> system.
>
> For more information:
> SA8974
> SA18579
> SA21709
> SA22091
> SA21120
> SA22130
> SA22173
> SA22276
> SA22771
>
> SOLUTION:
> Apply patches.
>
> -- ESX 3.0.1 --
> Apply patch ESX 3.0.1 Patch ESX-9986131.
>
> -- ESX 3.0.0 --
> Apply patch ESX 3.0.0 Patch ESX-3069097.
>
> -- ESX 2.5.4 --
> Apply ESX 2.5.4 Upgrade Patch 3 (Build# 36502)
>
> -- ESX 2.5.3 --
> Apply ESX 2.5.3 Upgrade Patch 6 (Build# 35703)
>
> -- ESX 2.1.3 --
> Apply ESX 2.1.3 Upgrade Patch 4 (Build# 35803)
>
> -- ESX 2.0.2 --
> Apply ESX 2.0.2 Upgrade Patch 4 (Build# 35801)
>
> PROVIDED AND/OR DISCOVERED BY:
> Reported by the vendor.
>
> ORIGINAL ADVISORY:
>
>
>
>
>
>
>
> OTHER REFERENCES:
> SA8974:
>
>
> SA18579:
>
>
> SA21709:
>
>
> SA22091:
>
>
> SA21120:
>
>
> SA22130:
>
>
> SA22173:
>
>
> SA22276:
>
>
> SA22771:
>
>
|