New User, Welcome!     Login

<< Previous Next >>

VMware Tools

VMware Emulation Flaw x64 Guest Privilege Escalation (1/2)

VMware Emulation Flaw x64 Guest Privilege Escalation (1/2)

Derek Soeder
ds.adv.pub@gmail.com

Discovered: January 18, 2008
Reported:   June 26, 2008
Published:  October 3, 2008



VMSA-2011-0013 VMware third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                        VMware Security Advisory

Advisory ID: VMSA-2011-0013
Synopsis:    VMware third party component updates for VMware vCenter
             Server, vCenter Update Manager, ESXi and ESX
Issue date:  2011-10-27

VMSA-2011-0004 VMware ESX/ESXi SLPD denial of service vulnerability and ESX third party updates for Service Console packages bind, pam, and rpm.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0004
Synopsis:          VMware ESX/ESXi SLPD denial of service vulnerability
                   and ESX third party updates for Service Console
                   packages bind, pam, and rpm.

ACROS Security: Remote Binary Planting in VMware Tools for Windows (ASPR #2010-04-12-1)

PUBLIC

=========================================================================
ACROS Security Problem Report #2010-04-12-1
-------------------------------------------------------------------------
ASPR #2010-04-12-1: Remote Binary Planting in VMware Tools for Windows
=========================================================================

Document ID:     ASPR #2010-04-12-1-PUB
Vendor:          VMware, Inc. (http://www.vmware.com)
Target:          VMware Tools for Windows 

VMSA-2010-0004 ESX Service Console and vMA third party updates

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0004
Synopsis:          ESX Service Console and vMA third party updates
Issue date:        2010-03-03
Updated on:        2010-03-03 (initial release of advisory)

VMSA-2009-0011 VMware Studio 2.0 addresses a security issue in the public beta version of Studio 2.0

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2009-0011
Synopsis:          VMware Studio 2.0 addresses a security issue in the
                   public beta version of Studio 2.0
Issue date:        2009-08-31

VMSA-2009-0012 VMware Movie Decoder, VMware Workstation, VMware Player, and VMware ACE resolve security issues.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2009-0012
Synopsis:          VMware Movie Decoder, VMware Workstation, VMware
                   Player, and VMware ACE resolve security issues.
Issue date:        2009-09-04

VMSA-2010-0008 VMware View 3.1.3 addresses an important cross-site scripting vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0008
Synopsis:          VMware View 3.1.3 addresses an important
                   cross-site scripting vulnerability
Issue date:        2010-05-05

VMSA-2012-0001 VMware ESXi and ESX updates to third party library and ESX Service Console

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 ----------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID: VMSA-2012-0001
Synopsis:    VMware ESXi and ESX updates to third party library
             and ESX Service Console
Issue date:  2012-01-30

VMSA-2010-0009 ESXi ntp and ESX Service Console third party updates

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0009
Synopsis:          ESXi ntp and ESX Service Console third party updates
Issue date:        2010-05-27
Updated on:        2010-05-27 (initial release of advisory)

VMSA-2010-0015 VMware ESX third party updates for Service Console

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0015
Synopsis:          VMware ESX third party updates for Service Console
Issue date:        2010-09-30
Updated on:        2010-09-30 (initial release of advisory)

VMSA-2012-0004 VMware View privilege escalation and cross-site scripting

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 -----------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID: VMSA-2012-0004
Synopsis:    VMware View privilege escalation and cross-site scripting
Issue date:  2012-03-15
Updated on:  2012-03-15 (initial advisory)

VMSA-2009-0001 ESX patches address an issue loading corrupt virtual disks and update Service Console packages

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2009-0001
Synopsis:          ESX patches address an issue loading corrupt virtual
                   disks and update Service Console packages
Issue date:        2009-01-30

VMSA-2010-0013

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0013
Synopsis:          VMware ESX third party updates for Service Console
Issue date:        2010-08-31
Updated on:        2010-08-31 (initial release of advisory)

VMSA-2010-0012 VMware vCenter Update Manager fix for Jetty Web server addresses important security vulnerabilities

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0012
Synopsis:          VMware vCenter Update Manager fix for Jetty Web
                   server addresses important security vulnerabilities
Issue date:        2010-07-19

VMSA-2010-0013 VMware ESX third party updates for Service Console

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0013
Synopsis:          VMware ESX third party updates for Service Console
Issue date:        2010-08-31
Updated on:        2010-08-31 (initial release of advisory)

VMSA-2011-0007 VMware ESXi and ESX Denial of Service and third party updates for Likewise components and ESX Service Console

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0007
Synopsis:          VMware ESXi and ESX Denial of Service and third party
                   updates for Likewise components and ESX Service
                   Console

iDefense Security Advisory 06.04.08: VMware Tools HGFS Local Privilege Escalation Vulnerability

http://labs.idefense.com/intelligence/vulnerabilities/
Jun 04, 2008

I. BACKGROUND

VMware is a software virtualization system which allows multiple virtual
computers to run on a single system. VMware Tools provides drivers and
utilities to enhance and optimize the experience within a guest
operating system running under VMware. For more information visit the
vendor's site at the following URL.


VMSA-2009-0010 VMware Hosted products update libpng and Apache HTTP Server

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2009-0010
Synopsis:          VMware Hosted products update libpng and Apache HTTP
                   Server
Issue date:        2009-08-20

VMSA-2011-0008 VMware vCenter Server and vSphere Client security vulnerabilities

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0008
Synopsis:          VMware vCenter Server and vSphere Client security
                   vulnerabilities
Issue date:        2011-05-05

VMSA-2009-0013 VMware Fusion resolves two security issues

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2009-0013
Synopsis:          VMware Fusion resolves two security issues
Issue date:        2009-10-01
Updated on:        2009-10-01 (initial release of advisory)

VMSA-2008-0015 Updated ESXi and ESX 3.5 packages address critical security issue in openwsman

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2008-0015
Synopsis:          Updated ESXi and ESX 3.5 packages address critical
                   security issue in openwsman
Issue date:        2008-09-18

VMSA-2011-0005 VMware vCenter Orchestrator remote code execution vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0005
Synopsis:          VMware vCenter Orchestrator remote code execution
                   vulnerability
Issue date:        2011-03-14

VMSA-2010-0019 VMware ESX third party updates for Service Console

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0019
Synopsis:          VMware ESX third party updates for Service Console
Issue date:        2010-12-07
Updated on:        2010-12-07

VMSA-2011-0002 Cisco Nexus 1000V VEM updates address denial of service in VMware ESX/ESXi

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0002
Synopsis:          Cisco Nexus 1000V VEM updates address denial of
                   service in VMware ESX/ESXi
Issue date:        2011-02-07

VMSA-2010-0020 VMware ESXi 4.1 Update Installer SFCB Authentication Flaw

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0020
Synopsis:          VMware ESXi 4.1 Update Installer SFCB Authentication
                   Flaw
Issue date:        2010-12-21

VMSA-2010-0002 VMware vCenter update release addresses multiple security issues in Java JRE

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -----------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2010-0002
Synopsis:          VMware vCenter update release addresses multiple
                   security issues in Java JRE
Issue date:        2010-01-29

VMSA-2012-0006 VMware ESXi and ESX address several security issues

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 -----------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID: VMSA-2012-0006
Synopsis:    VMware ESXi and ESX address several security issues
Issue date:  2012-03-29
Updated on:  2012-03-29 (initial advisory)

VMSA-2011-0014 VMware vCenter Update Manager fix for Jetty Web server addresses directory traversal vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 -----------------------------------------------------------------------
                        VMware Security Advisory

 Advisory ID: VMSA-2011-0014
 Synopsis:    VMware vCenter Update Manager fix for Jetty Web server
              addresses directory traversal vulnerability


VMSA-2011-0001 VMware ESX third party updates for Service Console packages glibc, sudo, and openldap

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
                   VMware Security Advisory

Advisory ID:       VMSA-2011-0001
Synopsis:          VMware ESX third party updates for Service Console
                   packages glibc, sudo, and openldap
Issue date:        2011-01-04

<<Previous Next>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!