* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Wednesday, July 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

    PENN Entertainment to Reveal Second Quarter Results and Host Live Conference Call on August 6

    Get Ready for Dancing, Music, and Lobster Tales at the Opera House!

    Get Ready for the Next Big Things from PlayStation Studios!

    Why Mitchel Musso Was Only Cast in Disney Projects During His ‘Hannah Montana’ Era

    Bunnie Xo Reveals Close Call with Returning to Adult Entertainment Before Leaving Jelly Roll

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Revolutionary AI Tool Set to Transform RNA Mapping, Challenging AlphaFold 3

    Essential Insights from Bosch’s BIS Settlement and DOJ Declination: What Every Company Using U.S. Technology Must Understand About the Foreign Direct Product Rule

    US Intensifies Trade Restrictions with Expanded Ban on Chinese Technology Imports

    How Cutting-Edge Technology and Knowledge Adoption Are Revolutionizing the Work Lives of Visually Impaired Employees

    Madison Parade of Homes Unveils Cutting-Edge Technology While Tackling Affordability Challenges

    Revolutionizing Battery Technology: How X-Rays and AI Are Powering the Future Powering Tomorrow: How X-Rays and AI Are Transforming Battery Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

    PENN Entertainment to Reveal Second Quarter Results and Host Live Conference Call on August 6

    Get Ready for Dancing, Music, and Lobster Tales at the Opera House!

    Get Ready for the Next Big Things from PlayStation Studios!

    Why Mitchel Musso Was Only Cast in Disney Projects During His ‘Hannah Montana’ Era

    Bunnie Xo Reveals Close Call with Returning to Adult Entertainment Before Leaving Jelly Roll

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Revolutionary AI Tool Set to Transform RNA Mapping, Challenging AlphaFold 3

    Essential Insights from Bosch’s BIS Settlement and DOJ Declination: What Every Company Using U.S. Technology Must Understand About the Foreign Direct Product Rule

    US Intensifies Trade Restrictions with Expanded Ban on Chinese Technology Imports

    How Cutting-Edge Technology and Knowledge Adoption Are Revolutionizing the Work Lives of Visually Impaired Employees

    Madison Parade of Homes Unveils Cutting-Edge Technology While Tackling Affordability Challenges

    Revolutionizing Battery Technology: How X-Rays and AI Are Powering the Future Powering Tomorrow: How X-Rays and AI Are Transforming Battery Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug

June 18, 2024
in Technology
VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug
Share on FacebookShare on Twitter

VMware by Broadcom has revealed a pair of critical-rated flaws in vCenter Server – the tool used to manage virtual machines and hosts in its flagship Cloud Foundation and vSphere suites.

Announced late on Monday night, Pacific Time, the critical-rated flaws are CVE-2024-37079 and CVE-2024-37080, both of which scored 9.8 on the ten-point Common Vulnerability Scoring System v3 scale.

VMware’s security bulletin describes both of the flaws as “heap-overflow vulnerabilities in the implementation of the DCE/RPC protocol” that mean “A malicious actor with network access to vCenter Server may trigger these vulnerabilities by sending a specially crafted network packet potentially leading to remote code execution.”

DCE/RPC (which stands for Distributed Computing Environment/Remote Procedure Calls) is a means of calling a procedure on a remote machine as if it were a local machine – just the ticket when managing virtual machines.

However, the prospect of an attacker using the flaws to run code on vCenter Server and drive fleets of VMs and hosts is deeply unpleasant.

VMware has published a resource for its customers that states the Broadcom business unit “is not currently aware of exploitation ‘in the wild’.”

Notorious cyber gang UNC3944 attacks vSphere and Azure to run VMs inside victims’ infrastructure

Patch now: Critical VMware, Atlassian flaws found

Patch now: Critical VMware, Atlassian flaws found

VMware urges emergency action to blunt hypervisor flaws

The good news is that patched versions of vCenter Server and Cloud Foundation are already available.

The bad news is that VMware hass not considered whether the flaws impact older versions of vSphere – meaning versions 6.5 and 6.7, which exited support in October 2022 but are still widely used, may be impacted but won’t be fixed.

Further unwelcome news is that VMware also revealed a third flaw – CVE-2024-37081 – described as “local privilege escalation vulnerabilities due to misconfiguration of sudo.” This one is rated important, with a score of 7.8, as it could mean “An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.”

The versions of vCenter Server and Coud Foundation affected by these flaws were released before Broadcom took over VMware – a tidbit we mention as some doomsayers have suggested job cuts at the virty giant could impact product quality.

VMware has tipped its hat to Matei “Mal” Badanoiu of Deloitte Romania for finding the flaws. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/18/vmware_criticial_vcenter_flaws/

Tags: BroadcomtechnologyVMware
Previous Post

Tencent ponders banning infomercials hosted by ‘virtual humans’ on its flagship video service

Next Post

IMF suggests tax on AI’s CO2 emissions, but not AI itself

Revolutionary AI Tool Set to Transform RNA Mapping, Challenging AlphaFold 3

July 1, 2026

Indiana Bishops Release Powerful Letter on Integral Ecology Featuring Insights from Theologian Rev. Terrence Ehrman, C.S.C

July 1, 2026

Former UNC Basketball Champion Caught in Major Illegal Sports Betting Scandal

July 1, 2026

Scientists Develop Tiny Diving Suits Enabling Cyborg Cockroaches to Breathe Underwater for 3 Hours

July 1, 2026

Discover Your Path: Pursue an Associate of Science in Health Sciences

July 1, 2026

I moved to a remote island off the coast of Alaska. Not even living on the road prepared me for this lifestyle. – Business Insider

July 1, 2026

Mexico Fans Ignite the Night with Thunderous Horns Outside Ecuador Hotel Before World Cup Showdown

July 1, 2026

How Generational Shifts Are Transforming and Challenging the Economy

July 1, 2026

Mayor Brandon Johnson Brings Back Police Terminals to Empower Mental Health Crisis Teams

July 1, 2026

Seaport Entertainment GC Steps Into New Role as Strategic CEO Adviser

July 1, 2026

Categories

Archives

July 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
2728293031  
« Jun    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,294)
  • Economy (1,314)
  • Entertainment (22,192)
  • General (22,400)
  • Health (10,350)
  • Lifestyle (1,327)
  • News (22,149)
  • People (1,318)
  • Politics (1,335)
  • Science (16,528)
  • Sports (21,813)
  • Technology (16,300)
  • World (1,307)

Recent News

Revolutionary AI Tool Set to Transform RNA Mapping, Challenging AlphaFold 3

July 1, 2026

Indiana Bishops Release Powerful Letter on Integral Ecology Featuring Insights from Theologian Rev. Terrence Ehrman, C.S.C

July 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version