VMware Update
2790Warning Date
Severity Level
Warning Number
Target Sector
21 October, 2020
● Critical
2020-1947
All
Description:
vmware has released a security update to address multiple vulnerabilities in the following products:
- ESXi
- 7.0
- 6.7
- 6.5
- VMware Cloud Foundation (ESXi)
- 4.x
- 3.x
- NSX-T
- 3.x
- 2.5.x
- VMware Cloud Foundation (NSX-T)
- 4.x
- 3.x
- Fusion
- 11.x
- Workstation
- 15.x
- vCenter Server -Virtual Appliance
- 6.7
- 6.5
- VMware Cloud Foundation (vCenter Server)
- 3.x
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Denial of service (DoS)
- Man in the middle attack
- Memory resource exhaustion
- Memory leak
- Remote code execution
Best practice and Recommendations:
The CERT team encourages users to review VMware security advisory and apply the necessary updates: