VMware ESX Multiple Vulnerabilities
Last Update Date:
28 Jan 2011
Release Date:
2 Sep 2010
5375
Views
RISK: Medium Risk
Multiple vulnerabilitieshave been identified in VMware ESX, which could be exploited by remote attackers to bypass security restrictions, disclose sensitive information, cause a denial of service or compromise a vulnerable system. These issues are caused by errors in cpio, tar, samba, krb5 and perl.
Impact
- Denial of Service
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- VMware ESX version 4.1
- VMware ESX version 4.0
- VMware ESX version 3.5
- VMware ESX version 3.0.3
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply patches for VMware ESX 3.5 :
- http://download3.vmware.com/software/vi/ESX350-201008405-SG.zip
- http://download3.vmware.com/software/vi/ESX350-201008407-SG.zip
- http://download3.vmware.com/software/vi/ESX350-201008410-SG.zip
- http://download3.vmware.com/software/vi/ESX350-201008411-SG.zip
- http://download3.vmware.com/software/vi/ESX350-201008412-SG.zip
Vulnerability Identifier
Source
Related Link
Share with