Skip to main content

VMware ESX Server krb5 Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 2 Jul 2009 5272 Views

RISK: Medium Risk

A vulnerability has been identified in VMware ESX Server, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a vulnerable system.


Impact

  • Denial of Service
  • Remote Code Execution

System / Technologies affected

  • VMware ESX Server 2.x
  • VMware ESX Server 3.x


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

ESX 3.5:
Apply ESX350-200906407-SG.
http://download3.vmware.com/software/vi/ESX350-200906407-SG.zip

ESX 2.5.5, 3.0.2, 3.0.3, and 4.0:
Patches are not yet available. Restrict access to Kerberos services if present (not installed by default).


Vulnerability Identifier

  • No CVE information is available

Source


Related Link