VMware ESX / ESXi Server Multiple Vulnerabilities
Last Update Date:
14 Oct 2011 11:53
Release Date:
14 Oct 2011
6455
Views
RISK: High Risk
TYPE: Operating Systems - VM Ware
Multiple vulnerabilities have been identified in VMware ESX and ESXi Server, which can be exploited by malicious people to disclose sensitive information, gain escalated privileges, conduct spoofing attacks, bypass certain security features, cause a Denial of Service and compromise a vulnerable system.
- Multiple vulnerabilities exist in the Service Console kernel.
- Multiple vulnerabilities exist in Kerberos (krb5-libs and krb5-workstation).
- Multiple vulnerabilities exist in the GNU C Library.
- Some errors in the mptsas, mpt2sas, and mptspi drivers can be exploited to corrupt memory.
Impact
- Denial of Service
- Elevation of Privilege
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
- Spoofing
- Data Manipulation
- LAN Based Remote Code Execution
System / Technologies affected
- VMware ESX Server 3.x
- VMware ESX Server 4.x
- VMware ESX Server 5.x
- VMware ESXi 4.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Vulnerability Identifier
- CVE-2010-0296
- CVE-2010-1083
- CVE-2010-1323
- CVE-2010-2492
- CVE-2010-2798
- CVE-2010-2938
- CVE-2010-2942
- CVE-2010-2943
- CVE-2010-3015
- CVE-2010-3066
- CVE-2010-3067
- CVE-2010-3078
- CVE-2010-3086
- CVE-2010-3296
- CVE-2010-3432
- CVE-2010-3442
- CVE-2010-3477
- CVE-2010-3699
- CVE-2010-3858
- CVE-2010-3859
- CVE-2010-3865
- CVE-2010-3876
- CVE-2010-3877
- CVE-2010-3880
- CVE-2010-3904
- CVE-2010-4072
- CVE-2010-4073
- CVE-2010-4075
- CVE-2010-4080
- CVE-2010-4081
- CVE-2010-4083
- CVE-2010-4157
- CVE-2010-4158
- CVE-2010-4161
- CVE-2010-4238
- CVE-2010-4242
- CVE-2010-4243
- CVE-2010-4247
- CVE-2010-4248
- CVE-2010-4249
- CVE-2010-4251
- CVE-2010-4255
- CVE-2010-4263
- CVE-2010-4343
- CVE-2010-4346
- CVE-2010-4526
- CVE-2010-4655
- CVE-2011-0281
- CVE-2011-0282
- CVE-2011-0521
- CVE-2011-0536
- CVE-2011-0710
- CVE-2011-1010
- CVE-2011-1071
- CVE-2011-1090
- CVE-2011-1095
- CVE-2011-1478
- CVE-2011-1494
- CVE-2011-1495
- CVE-2011-1658
- CVE-2011-1659
Source
Related Link
Share with