September 2007 24

VMWare release ESX patch

http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=1001724

This patch fixes the following security issues:

  • Fixes a security vulnerability that could allow a guest operating system user with administrative privileges to cause memory corruption in a host process, and thus potentially execute arbitrary code on the host. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the following name to this issue: CVE-2007-4496.

Thanks to Rafal Wojtczvk of McAfee for identifying and reporting this issue.

  • Fixes a denial of service vulnerability that could allow a guest operating system to cause a host process to become unresponsive or exit unexpectedly. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the following name to this issue: CVE-2007-4497.

Thanks to Rafal Wojtczvk of McAfee for identifying and reporting this issue.

I was reading an article talking about the need to secure the VMWare servers, and it mentioned a new security vulnerability identified on Friday, check it out. Securing the VMWare ESX servers is just as important as patching the virtual or physical windows/linux/unix servers, in a virtualized world you could argue it’s even more important as one physical asset could cause disruption to several business lines/applications (arguably as could any share infrastructure).

Related posts:

  1. Time to Patch Mac OS Apple The 10.6.2 Update is recommended for all users running...
  2. Patch Downloader v6.0 announced PRNewswire Patch Downloader v6.0 Eases the Pain of Downloading Patches...
  3. Applying security patches remains core Computer Weekly Microsoft has confirmed that it is investigating reports...

Related posts brought to you by Yet Another Related Posts Plugin.

Bookmark and Share

Leave a Reply