Patches For Vmware Esx And Esxi


Recommended Posts

31 January 2009, 20:59

Patches for VMware ESX and ESXi

VMware has released updates for the ESX server and ESXi hypervisor, to fix four vulnerabilities which affect VMware ESXi 3.5, VMware ESX 3.5, VMware ESX 3.0.3 and VMware ESX 3.0.2. One fix is for an issue with corrupted VMDK delta snapshots, which meant that if a corrupted snapshot was loaded, it was possible that it could crash the ESX host.

The net-snmp package was fixed to remove its vulnerability to denial-of-service attacks related to the processing of SNMP GETBULK commands. The XML parser library, libxml2, was also fixed as it suffered from an integer overflow vulnerability, which could cause a buffer overflow with a subsequent crash of the affected application, or potentially lead to execution of arbitrary code. A second bug fixed in the XML parser, made it possible to place the application in an endless loop, by feeding it malformed XML. See also:

(djwm)

Heise security: http://www.heise-online.co.uk/security/Pat...i--/news/112530

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...