* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, May 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Discover the Top Indie Movies You Can’t Miss in Seattle This May 2026

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

    Eye on Entertainment | Entertainment | news8000.com – news8000.com

    This Intense New HBO Show from the ‘Baby Reindeer’ Creator Is Violent, Thrilling, and Unforgettable

    Matt Katrosar Named Executive VP of Global Advertising & Partnerships at Radial Entertainment

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    TSS Names Chief Strategy Officer and Chief Technology Officer to Expand AI Infrastructure Push – citybiz

    Innovative Creations: The Art of Crocheted Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Discover the Top Indie Movies You Can’t Miss in Seattle This May 2026

    Discover the Best Live and Local Entertainment This Week!

    Ballet Arkansas Debuts ‘Origins’ in North Little Rock as Helena Comes Alive with Jazz on the River

    Eye on Entertainment | Entertainment | news8000.com – news8000.com

    This Intense New HBO Show from the ‘Baby Reindeer’ Creator Is Violent, Thrilling, and Unforgettable

    Matt Katrosar Named Executive VP of Global Advertising & Partnerships at Radial Entertainment

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

    Solar Fab-Tech USA 2026: Powering the Future of Solar Innovation and Manufacturing

    How High Can This Technology Rally Soar?

    Chinese Green Technology Raises National Security Concerns for Europe, Report Warns

    TSS Names Chief Strategy Officer and Chief Technology Officer to Expand AI Infrastructure Push – citybiz

    Innovative Creations: The Art of Crocheted Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug

June 18, 2024
in Technology
VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug
Share on FacebookShare on Twitter

VMware by Broadcom has revealed a pair of critical-rated flaws in vCenter Server – the tool used to manage virtual machines and hosts in its flagship Cloud Foundation and vSphere suites.

Announced late on Monday night, Pacific Time, the critical-rated flaws are CVE-2024-37079 and CVE-2024-37080, both of which scored 9.8 on the ten-point Common Vulnerability Scoring System v3 scale.

VMware’s security bulletin describes both of the flaws as “heap-overflow vulnerabilities in the implementation of the DCE/RPC protocol” that mean “A malicious actor with network access to vCenter Server may trigger these vulnerabilities by sending a specially crafted network packet potentially leading to remote code execution.”

DCE/RPC (which stands for Distributed Computing Environment/Remote Procedure Calls) is a means of calling a procedure on a remote machine as if it were a local machine – just the ticket when managing virtual machines.

However, the prospect of an attacker using the flaws to run code on vCenter Server and drive fleets of VMs and hosts is deeply unpleasant.

VMware has published a resource for its customers that states the Broadcom business unit “is not currently aware of exploitation ‘in the wild’.”

Notorious cyber gang UNC3944 attacks vSphere and Azure to run VMs inside victims’ infrastructure

Patch now: Critical VMware, Atlassian flaws found

Patch now: Critical VMware, Atlassian flaws found

VMware urges emergency action to blunt hypervisor flaws

The good news is that patched versions of vCenter Server and Cloud Foundation are already available.

The bad news is that VMware hass not considered whether the flaws impact older versions of vSphere – meaning versions 6.5 and 6.7, which exited support in October 2022 but are still widely used, may be impacted but won’t be fixed.

Further unwelcome news is that VMware also revealed a third flaw – CVE-2024-37081 – described as “local privilege escalation vulnerabilities due to misconfiguration of sudo.” This one is rated important, with a score of 7.8, as it could mean “An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.”

The versions of vCenter Server and Coud Foundation affected by these flaws were released before Broadcom took over VMware – a tidbit we mention as some doomsayers have suggested job cuts at the virty giant could impact product quality.

VMware has tipped its hat to Matei “Mal” Badanoiu of Deloitte Romania for finding the flaws. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/18/vmware_criticial_vcenter_flaws/

Tags: BroadcomtechnologyVMware
Previous Post

Tencent ponders banning infomercials hosted by ‘virtual humans’ on its flagship video service

Next Post

IMF suggests tax on AI’s CO2 emissions, but not AI itself

Trump Unveils Exciting New Choice for Surgeon General Nomination

May 1, 2026

2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

May 1, 2026

Kentucky Derby 2026: Odds, Post Positions, Top Picks, Date & Time Predictions Featuring Renegade, Further Ado, and Commandment

May 1, 2026

Bringing Incarcerated Voices to Life in Research and Teaching

May 1, 2026

Unlocking Tomorrow: The Breakthrough Technologies Driving Small-Body Sampling Robots

May 1, 2026

EU Research Commissioner Delivers Powerful Appeal to US Scientists and Investors

May 1, 2026

Health-Care Executive to Deliver Inspiring Address at Spring Commencement

May 1, 2026

Mass Appeal Lifestyle contributor Limor Suss shares spring must-haves – WWLP

May 1, 2026

Leawood Prepares for Thrilling World Cup Celebrations Ahead of Historic Tournament

May 1, 2026

Euro Zone Inflation Soars to 3% as Economic Growth Stalls

May 1, 2026

Categories

Archives

May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,194)
  • Economy (1,215)
  • Entertainment (22,090)
  • General (21,269)
  • Health (10,247)
  • Lifestyle (1,225)
  • News (22,149)
  • People (1,215)
  • Politics (1,234)
  • Science (16,429)
  • Sports (21,713)
  • Technology (16,199)
  • World (1,205)

Recent News

Trump Unveils Exciting New Choice for Surgeon General Nomination

May 1, 2026

2026 Technology Roundtable: Unveiling the Future of Supply Chain Innovation

May 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version