* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Wednesday, July 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

    PENN Entertainment to Reveal Second Quarter Results and Host Live Conference Call on August 6

    Get Ready for Dancing, Music, and Lobster Tales at the Opera House!

    Get Ready for the Next Big Things from PlayStation Studios!

    Why Mitchel Musso Was Only Cast in Disney Projects During His ‘Hannah Montana’ Era

    Bunnie Xo Reveals Close Call with Returning to Adult Entertainment Before Leaving Jelly Roll

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Essential Insights from Bosch’s BIS Settlement and DOJ Declination: What Every Company Using U.S. Technology Must Understand About the Foreign Direct Product Rule

    US Intensifies Trade Restrictions with Expanded Ban on Chinese Technology Imports

    How Cutting-Edge Technology and Knowledge Adoption Are Revolutionizing the Work Lives of Visually Impaired Employees

    Madison Parade of Homes Unveils Cutting-Edge Technology While Tackling Affordability Challenges

    Revolutionizing Battery Technology: How X-Rays and AI Are Powering the Future Powering Tomorrow: How X-Rays and AI Are Transforming Battery Technology

    Micron Technology (MU): 10 Must-Buy Stocks to Hold for the Next Decade

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

    PENN Entertainment to Reveal Second Quarter Results and Host Live Conference Call on August 6

    Get Ready for Dancing, Music, and Lobster Tales at the Opera House!

    Get Ready for the Next Big Things from PlayStation Studios!

    Why Mitchel Musso Was Only Cast in Disney Projects During His ‘Hannah Montana’ Era

    Bunnie Xo Reveals Close Call with Returning to Adult Entertainment Before Leaving Jelly Roll

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Essential Insights from Bosch’s BIS Settlement and DOJ Declination: What Every Company Using U.S. Technology Must Understand About the Foreign Direct Product Rule

    US Intensifies Trade Restrictions with Expanded Ban on Chinese Technology Imports

    How Cutting-Edge Technology and Knowledge Adoption Are Revolutionizing the Work Lives of Visually Impaired Employees

    Madison Parade of Homes Unveils Cutting-Edge Technology While Tackling Affordability Challenges

    Revolutionizing Battery Technology: How X-Rays and AI Are Powering the Future Powering Tomorrow: How X-Rays and AI Are Transforming Battery Technology

    Micron Technology (MU): 10 Must-Buy Stocks to Hold for the Next Decade

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug

June 18, 2024
in Technology
VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug
Share on FacebookShare on Twitter

VMware by Broadcom has revealed a pair of critical-rated flaws in vCenter Server – the tool used to manage virtual machines and hosts in its flagship Cloud Foundation and vSphere suites.

Announced late on Monday night, Pacific Time, the critical-rated flaws are CVE-2024-37079 and CVE-2024-37080, both of which scored 9.8 on the ten-point Common Vulnerability Scoring System v3 scale.

VMware’s security bulletin describes both of the flaws as “heap-overflow vulnerabilities in the implementation of the DCE/RPC protocol” that mean “A malicious actor with network access to vCenter Server may trigger these vulnerabilities by sending a specially crafted network packet potentially leading to remote code execution.”

DCE/RPC (which stands for Distributed Computing Environment/Remote Procedure Calls) is a means of calling a procedure on a remote machine as if it were a local machine – just the ticket when managing virtual machines.

However, the prospect of an attacker using the flaws to run code on vCenter Server and drive fleets of VMs and hosts is deeply unpleasant.

VMware has published a resource for its customers that states the Broadcom business unit “is not currently aware of exploitation ‘in the wild’.”

Notorious cyber gang UNC3944 attacks vSphere and Azure to run VMs inside victims’ infrastructure

Patch now: Critical VMware, Atlassian flaws found

Patch now: Critical VMware, Atlassian flaws found

VMware urges emergency action to blunt hypervisor flaws

The good news is that patched versions of vCenter Server and Cloud Foundation are already available.

The bad news is that VMware hass not considered whether the flaws impact older versions of vSphere – meaning versions 6.5 and 6.7, which exited support in October 2022 but are still widely used, may be impacted but won’t be fixed.

Further unwelcome news is that VMware also revealed a third flaw – CVE-2024-37081 – described as “local privilege escalation vulnerabilities due to misconfiguration of sudo.” This one is rated important, with a score of 7.8, as it could mean “An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.”

The versions of vCenter Server and Coud Foundation affected by these flaws were released before Broadcom took over VMware – a tidbit we mention as some doomsayers have suggested job cuts at the virty giant could impact product quality.

VMware has tipped its hat to Matei “Mal” Badanoiu of Deloitte Romania for finding the flaws. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/18/vmware_criticial_vcenter_flaws/

Tags: BroadcomtechnologyVMware
Previous Post

Tencent ponders banning infomercials hosted by ‘virtual humans’ on its flagship video service

Next Post

IMF suggests tax on AI’s CO2 emissions, but not AI itself

How Generational Shifts Are Reshaping and Challenging the Economy

July 1, 2026

Mayor Brandon Johnson Brings Back Police Terminals to Empower Mental Health Crisis Teams

July 1, 2026

Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

July 1, 2026

SCOTUS Strikes Down Limit on Political Party Spending, Shaking Up the Election Landscape

June 30, 2026

Essential Insights from Bosch’s BIS Settlement and DOJ Declination: What Every Company Using U.S. Technology Must Understand About the Foreign Direct Product Rule

June 30, 2026

Heat, humidity and housing: why British heatwaves hit differently – Inside Ecology

June 30, 2026

Coach Cal to Be Honored with Induction into Memphis Sports Hall of Fame

June 30, 2026

Newton School Board Unveils Exciting New Science Curriculum for Secondary Students

June 30, 2026

6 Science-Backed Tips to Help Picky Kids Love Eating Vegetables

June 30, 2026

10 Healthy Habits Doctors Recommend for a Happier, Healthier Life

June 30, 2026

Categories

Archives

July 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
2728293031  
« Jun    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,293)
  • Economy (1,314)
  • Entertainment (22,192)
  • General (22,393)
  • Health (10,350)
  • Lifestyle (1,326)
  • News (22,149)
  • People (1,317)
  • Politics (1,335)
  • Science (16,528)
  • Sports (21,812)
  • Technology (16,299)
  • World (1,306)

Recent News

How Generational Shifts Are Reshaping and Challenging the Economy

July 1, 2026

Mayor Brandon Johnson Brings Back Police Terminals to Empower Mental Health Crisis Teams

July 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version