Security-Alerts mailing list archive (security-alerts@yandex-team.ru)
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[security-alerts] FW: [SA23680] VMWare ESX Server Multiple Vulnerabilities
>
> ----------------------------------------------------------------------
>
> TITLE:
> VMWare ESX Server Multiple Vulnerabilities
>
> SECUNIA ADVISORY ID:
> SA23680
>
> VERIFY ADVISORY:
> http://secunia.com/advisories/23680/
>
> CRITICAL:
> Highly critical
>
> IMPACT:
> Security Bypass, Exposure of sensitive information, Privilege
> escalation, DoS, System access
>
> WHERE:
> From remote
>
> OPERATING SYSTEM:
> VMware ESX Server 2.x
> http://secunia.com/product/2125/
> VMware ESX Server 3.x
> http://secunia.com/product/10757/
>
> DESCRIPTION:
> Some vulnerabilities have been reported in VMWare ESX Server, which
> can be exploited by malicious people to gain knowledge of sensitive
> information, bypass certain security restrictions, cause a DoS
> (Denial of Service), gain escalated privileges, or compromise a
> system.
>
> For more information:
> SA8974
> SA18579
> SA21709
> SA22091
> SA21120
> SA22130
> SA22173
> SA22276
> SA22771
>
> SOLUTION:
> Apply patches.
>
> -- ESX 3.0.1 --
> Apply patch ESX 3.0.1 Patch ESX-9986131.
>
> -- ESX 3.0.0 --
> Apply patch ESX 3.0.0 Patch ESX-3069097.
>
> -- ESX 2.5.4 --
> Apply ESX 2.5.4 Upgrade Patch 3 (Build# 36502)
>
> -- ESX 2.5.3 --
> Apply ESX 2.5.3 Upgrade Patch 6 (Build# 35703)
>
> -- ESX 2.1.3 --
> Apply ESX 2.1.3 Upgrade Patch 4 (Build# 35803)
>
> -- ESX 2.0.2 --
> Apply ESX 2.0.2 Upgrade Patch 4 (Build# 35801)
>
> PROVIDED AND/OR DISCOVERED BY:
> Reported by the vendor.
>
> ORIGINAL ADVISORY:
> http://www.vmware.com/support/vi3/doc/esx-9986131-patch.html
> http://www.vmware.com/support/vi3/doc/esx-3069097-patch.html
> http://www.vmware.com/support/esx25/doc/esx-254-200612-patch.html
> http://www.vmware.com/support/esx25/doc/esx-253-200612-patch.html
> http://www.vmware.com/support/esx21/doc/esx-213-200612-patch.html
> http://www.vmware.com/support/esx2/doc/esx-202-200612-patch.html
>
> OTHER REFERENCES:
> SA8974:
> http://secunia.com/advisories/8974
>
> SA18579:
> http://secunia.com/advisories/18579
>
> SA21709:
> http://secunia.com/advisories/21709
>
> SA22091:
> http://secunia.com/advisories/22091
>
> SA21120:
> http://secunia.com/advisories/21120
>
> SA22130:
> http://secunia.com/advisories/22130
>
> SA22173:
> http://secunia.com/advisories/22173
>
> SA22276:
> http://secunia.com/advisories/22276
>
> SA22771:
> http://secunia.com/advisories/22771
>
|