VMware Products Multiple Vulnerabilities
RISK: High Risk
TYPE: Operating Systems - VM Ware
Multiple vulnerabilities have been identified in multiple VMware products, which can be exploited by malicious users to disclose certain information and by malicious people to disclose potentially sensitive information, hijack a user's session, conduct DNS cache poisoning attacks, bypass certain security restrictions, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system.
Impact
- Denial of Service
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- VMware ESX Server 4.x
- VMware ESXi 4.x
- VMware ESXi 5.x
- VMware vCenter Server 4.x
- VMware vCenter Server 5.x
- VMware vSphere Update Manager 5.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply patches
Vulnerability Identifier
- CVE-2011-3190
- CVE-2011-3375
- CVE-2011-3389
- CVE-2011-3516
- CVE-2011-3521
- CVE-2011-3544
- CVE-2011-3545
- CVE-2011-3546
- CVE-2011-3547
- CVE-2011-3548
- CVE-2011-3549
- CVE-2011-3550
- CVE-2011-3551
- CVE-2011-3552
- CVE-2011-3553
- CVE-2011-3554
- CVE-2011-3555
- CVE-2011-3556
- CVE-2011-3557
- CVE-2011-3558
- CVE-2011-3560
- CVE-2011-3561
- CVE-2012-0022
Source
Related Link
Share with