* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, March 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Get Ready for an Exciting Weekend Filled with Theater, Concerts, and a Film Festival!

    Australian casino operator Star Entertainment’s first-half loss narrows – Reuters

    Golden Entertainment, Inc. (GDEN) director receives RSUs and common shares – Stock Titan

    What the Future Holds for UK Entertainment in 2025

    Discover the All-New ‘ABC Entertainment Update’ Podcast – Your Ultimate Source for the Latest in TV!

    Discover Thrilling Adventures Awaiting Every Movie Lover at the Film Festival

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Trump Calls for Immediate Ban on Anthropic AI Technology in US Agencies Over Ethical Fears

    India and Israel Forge Stronger Alliance in Defence and Technology Innovation

    How NVIDIA’s Evolution into the “Berkshire of Technology” Could Unlock Huge Shareholder Gains

    Trump Media & Technology Group Under Fire for Algorithmic Misconduct: Impact on Its Valuation Explained

    Flexport Launches Groundbreaking Technology to Automate Tariff Refunds

    EU and Nigeria Kick Off Exciting New Partnership in Groundbreaking Science & Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Get Ready for an Exciting Weekend Filled with Theater, Concerts, and a Film Festival!

    Australian casino operator Star Entertainment’s first-half loss narrows – Reuters

    Golden Entertainment, Inc. (GDEN) director receives RSUs and common shares – Stock Titan

    What the Future Holds for UK Entertainment in 2025

    Discover the All-New ‘ABC Entertainment Update’ Podcast – Your Ultimate Source for the Latest in TV!

    Discover Thrilling Adventures Awaiting Every Movie Lover at the Film Festival

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Trump Calls for Immediate Ban on Anthropic AI Technology in US Agencies Over Ethical Fears

    India and Israel Forge Stronger Alliance in Defence and Technology Innovation

    How NVIDIA’s Evolution into the “Berkshire of Technology” Could Unlock Huge Shareholder Gains

    Trump Media & Technology Group Under Fire for Algorithmic Misconduct: Impact on Its Valuation Explained

    Flexport Launches Groundbreaking Technology to Automate Tariff Refunds

    EU and Nigeria Kick Off Exciting New Partnership in Groundbreaking Science & Technology

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug

June 18, 2024
in Technology
VMware by Broadcom warns of two critical vCenter flaws, plus a nasty sudo bug
Share on FacebookShare on Twitter

VMware by Broadcom has revealed a pair of critical-rated flaws in vCenter Server – the tool used to manage virtual machines and hosts in its flagship Cloud Foundation and vSphere suites.

Announced late on Monday night, Pacific Time, the critical-rated flaws are CVE-2024-37079 and CVE-2024-37080, both of which scored 9.8 on the ten-point Common Vulnerability Scoring System v3 scale.

VMware’s security bulletin describes both of the flaws as “heap-overflow vulnerabilities in the implementation of the DCE/RPC protocol” that mean “A malicious actor with network access to vCenter Server may trigger these vulnerabilities by sending a specially crafted network packet potentially leading to remote code execution.”

DCE/RPC (which stands for Distributed Computing Environment/Remote Procedure Calls) is a means of calling a procedure on a remote machine as if it were a local machine – just the ticket when managing virtual machines.

However, the prospect of an attacker using the flaws to run code on vCenter Server and drive fleets of VMs and hosts is deeply unpleasant.

VMware has published a resource for its customers that states the Broadcom business unit “is not currently aware of exploitation ‘in the wild’.”

Notorious cyber gang UNC3944 attacks vSphere and Azure to run VMs inside victims’ infrastructure

Patch now: Critical VMware, Atlassian flaws found

Patch now: Critical VMware, Atlassian flaws found

VMware urges emergency action to blunt hypervisor flaws

The good news is that patched versions of vCenter Server and Cloud Foundation are already available.

The bad news is that VMware hass not considered whether the flaws impact older versions of vSphere – meaning versions 6.5 and 6.7, which exited support in October 2022 but are still widely used, may be impacted but won’t be fixed.

Further unwelcome news is that VMware also revealed a third flaw – CVE-2024-37081 – described as “local privilege escalation vulnerabilities due to misconfiguration of sudo.” This one is rated important, with a score of 7.8, as it could mean “An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.”

The versions of vCenter Server and Coud Foundation affected by these flaws were released before Broadcom took over VMware – a tidbit we mention as some doomsayers have suggested job cuts at the virty giant could impact product quality.

VMware has tipped its hat to Matei “Mal” Badanoiu of Deloitte Romania for finding the flaws. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/18/vmware_criticial_vcenter_flaws/

Tags: BroadcomtechnologyVMware
Previous Post

Tencent ponders banning infomercials hosted by ‘virtual humans’ on its flagship video service

Next Post

IMF suggests tax on AI’s CO2 emissions, but not AI itself

Rapid Expansion of Land Plants Uncovered by Carbon-Phosphorus Burial Ratios in the Late Ordovician

March 1, 2026

Rethinking How to Lower Blood Sugar Naturally: 12 Science-Backed Ways From the Inside Out [LvQ3ppfX4A] – Boston University

March 1, 2026

Measles and echo chambers, fresh science, and more – Your Local Epidemiologist | Katelyn Jetelina

March 1, 2026

2026 PS5 Game of the Year Contender Launches Today-Don’t Miss Out!

March 1, 2026

FIFA and Seattle Officials Keep a Close Eye on Iran’s Thrilling World Cup Journey

March 1, 2026

China poised to earn vast profits from global energy transition: analysts – South China Morning Post

March 1, 2026

Get Ready for an Exciting Weekend Filled with Theater, Concerts, and a Film Festival!

March 1, 2026

Feeding Tampa Bay Launches Groundbreaking Health-Focused Plan to Nourish the Community

March 1, 2026

California Politics Uncovered: Must-Know Developments for February 28, 2025

March 1, 2026

Trump Calls for Immediate Ban on Anthropic AI Technology in US Agencies Over Ethical Fears

March 1, 2026

Categories

Archives

March 2026
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Feb    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,097)
  • Economy (1,114)
  • Entertainment (21,991)
  • General (20,162)
  • Health (10,154)
  • Lifestyle (1,129)
  • News (22,149)
  • People (1,119)
  • Politics (1,131)
  • Science (16,329)
  • Sports (21,616)
  • Technology (16,096)
  • World (1,106)

Recent News

Rapid Expansion of Land Plants Uncovered by Carbon-Phosphorus Burial Ratios in the Late Ordovician

March 1, 2026

Rethinking How to Lower Blood Sugar Naturally: 12 Science-Backed Ways From the Inside Out [LvQ3ppfX4A] – Boston University

March 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version