VMWARE ADVISORY |
2023-10-20 | Yee Ching Tok | VMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs |
2023-02-03 | Jim Clausing | VMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html |
2020-04-10 | Scott Fendley | Critical Vuln in vCenter vmdir (CVE-2020-3952) |
2018-10-17 | Russ McRee | VMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html |
2015-12-19 | Russell Eubanks | VMWare Security Advisory |
2014-10-01 | Russ McRee | VMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html |
2014-09-12 | Chris Mohan | VMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html |
2013-12-23 | Scott Fendley | VMWare ESX/ESXi Security Advisory |
2013-08-02 | Chris Mohan | VMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html |
2013-05-31 | Chris Mohan | VMware releases new and updated security advisories |
2013-02-22 | Chris Mohan | VMware releases new and updated security advisories |
2013-02-01 | Jim Clausing | VMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html) |
2012-10-05 | Richard Porter | VMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html |
2012-08-31 | Johannes Ullrich | VMware Updates |
2012-07-13 | Russ McRee | VMWare Security Advisory 12 JUL 2012 |
2012-06-14 | Johannes Ullrich | VMWare Security Advisories |
2012-01-31 | Russ McRee | Firefox 10 and VMWare advisories and updates |
2011-11-18 | Kevin Liston | Recent VMWare security advisories |
2011-10-05 | Jim Clausing | VMware Advisory - UDF file system handling |
2011-02-08 | Chris Mohan | VMWare Security Advisory |
2010-05-30 | Kevin Liston | VMware ESX/ESXi Updates |
2008-06-01 | Mari Nichols | Updates to VMware resolve critical security issues |
VMWARE |
2025-03-12/a> | Johannes Ullrich | Scans for VMWare Hybrid Cloud Extension (HCX) API (Log4j - not brute forcing) |
2023-10-20/a> | Yee Ching Tok | VMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs |
2023-05-14/a> | Guy Bruneau | VMware Aria Operations addresses multiple Local Privilege Escalations and a Deserialization issue |
2023-03-18/a> | Xavier Mertens | Old Backdoor, New Obfuscation |
2023-02-03/a> | Jim Clausing | VMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html |
2021-11-04/a> | Tom Webb | Xmount for Disk Images |
2020-08-22/a> | Guy Bruneau | VMware App Volumes patches address Stored Cross-Site Scripting (XSS) vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0019.html |
2020-07-11/a> | Guy Bruneau | VMware XPC Client validation privilege escalation vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0017.html |
2020-06-15/a> | Rick Wanner | VMWare Security Advisory - VMSA-2020-0013 - https://www.vmware.com/security/advisories/VMSA-2020-0013.html |
2020-05-19/a> | Rick Wanner | VMWare Security Advisory - VMSA-2020-0010 - https://www.vmware.com/security/advisories/VMSA-2020-0010.html |
2020-05-09/a> | Rick Wanner | VMWare vRealize Critical vulnerabilities due to SaltStack - VMSA-2020-0009 |
2020-04-10/a> | Scott Fendley | Critical Vuln in vCenter vmdir (CVE-2020-3952) |
2018-11-20/a> | Xavier Mertens | VMware Affected by Dell EMC Avamar Vulnerability |
2018-10-17/a> | Russ McRee | VMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html |
2018-05-22/a> | Xavier Mertens | VMware Workstation and Fusion updates address signature bypass and multiple denial-of-service vulnerabilities https://www.vmware.com/security/advisories/VMSA-2018-0013.html |
2017-12-20/a> | Richard Porter | VMWare Security Advisory: VMSA-2017-0021: https://www.vmware.com/security/advisories/VMSA-2017-0021.html |
2017-09-16/a> | Guy Bruneau | VMware ESXi, vCenter Server, Fusion and Workstation updates resolve multiple security vulnerabilities - https://www.vmware.com/security/advisories/VMSA-2017-0015.html |
2017-03-29/a> | Xavier Mertens | Critical VMware vulnerabilities disclosed |
2017-01-31/a> | Johannes Ullrich | VMWare Security Advisory for AirWatch http://www.vmware.com/security/advisories/VMSA-2017-0001.html |
2016-11-23/a> | Tom Webb | Vmware Patches VMSA-2016-0005.5, VMSA-2016-0018.3 and VMSA-2016-0021 |
2016-10-26/a> | Johannes Ullrich | New VMWare Security Advisory: VMSA-2016-0017 Information Disclosure in VMWare Fusion and VMWare Tools https://www.vmware.com/security/advisories/VMSA-2016-0017.html |
2016-05-25/a> | Rick Wanner | VMWare Security Advisories |
2016-02-23/a> | Xavier Mertens | VMware VMSA-2016-0002 |
2016-02-13/a> | Guy Bruneau | VMware VMSA-2015-0007.3 has been Re-released |
2016-01-10/a> | Jim Clausing | VMware security update |
2015-12-19/a> | Russell Eubanks | VMWare Security Advisory |
2015-04-04/a> | Didier Stevens | VMware Product Updates Address Critical Information Disclosure Issue In JRE |
2014-12-05/a> | Basil Alawi S.Taher | VMware new and updated security advisories |
2014-10-23/a> | Russ McRee | Digest: 23 OCT 2014 |
2014-10-01/a> | Russ McRee | VMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html |
2014-09-12/a> | Chris Mohan | VMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html |
2014-08-14/a> | Basil Alawi S.Taher | Threats to virtual environments |
2014-08-05/a> | Johannes Ullrich | Center for Internet Security Releases Benchmark for VMWare ESXi 5.5 https://benchmarks.cisecurity.org/downloads/form/index.cfm?download=esxi55.100 |
2014-04-15/a> | Richard Porter | VMWare Advisory VMSA-2014-0004 - Updates on OpenSSL HeartBleed http://www.vmware.com/security/advisories/VMSA-2014-0004.html |
2014-04-11/a> | Rob VandenBrink | VMware Security Advisories / Patches released for 2 issues (NOT Heartbleed) - http://www.vmware.com/security/advisories/VMSA-2014-0003.html and http://www.vmware.com/security/advisories/VMSA-2014-0002.html |
2014-01-17/a> | Russ McRee | New and updated VMWare security advisories - http://www.vmware.com/security/advisories |
2013-12-23/a> | Scott Fendley | VMWare ESX/ESXi Security Advisory |
2013-12-04/a> | Adrien de Beaupre | VMware Security Advisory VMSA-2013-0014 |
2013-11-15/a> | Johannes Ullrich | VMWare Security Advisory: http://www.vmware.com/security/advisories/VMSA-2013-0013.html |
2013-08-30/a> | Kevin Liston | VMware ESXi and ESX address an NFC Protocol Unhandled Exception |
2013-08-02/a> | Chris Mohan | VMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html |
2013-06-11/a> | Swa Frantzen | vmware security advisory VMSA-2013-0008 |
2013-05-31/a> | Chris Mohan | VMware releases new and updated security advisories |
2013-02-22/a> | Chris Mohan | VMware releases new and updated security advisories |
2013-02-08/a> | Johannes Ullrich | VMWare Advisories (ESX, Workstation, Fusion...) http://www.vmware.com/security/advisories/VMSA-2013-0002.html |
2013-02-01/a> | Jim Clausing | VMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html) |
2012-11-16/a> | Guy Bruneau | VMware security updates for vSphere API and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2012-0016.html |
2012-10-05/a> | Richard Porter | VMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html |
2012-08-31/a> | Johannes Ullrich | VMware Updates |
2012-07-13/a> | Russ McRee | VMWare Security Advisory 12 JUL 2012 |
2012-06-14/a> | Johannes Ullrich | VMWare Security Advisories |
2012-06-04/a> | Rob VandenBrink | vSphere 5.0 Hardening Guide Officially Released |
2012-05-25/a> | Guy Bruneau | VMware vMA Security Advisory VMSA-2012-0010 - http://www.vmware.com/security/advisories/VMSA-2012-0010.html |
2012-05-03/a> | Guy Bruneau | VMware Critical Security Issues Advisory - http://www.vmware.com/security/advisories/VMSA-2012-0009.html |
2012-05-02/a> | Bojan Zdrnja | Monitoring VMWare logs |
2012-04-13/a> | Daniel Wesemann | VMware ESX/ESXi privilege escalation vuln. advisory: http://www.vmware.com/security/advisories/VMSA-2012-0007.html |
2012-03-16/a> | Guy Bruneau | VMware New and Updated Security Advisories |
2012-03-09/a> | Guy Bruneau | VMware New and Updated Advisories |
2012-01-31/a> | Russ McRee | Firefox 10 and VMWare advisories and updates |
2011-11-18/a> | Kevin Liston | Recent VMWare security advisories |
2011-10-13/a> | Kevin Shortt | VMware ESXi and ESX updates to third party libraries and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2011-0012.html |
2011-10-05/a> | Jim Clausing | VMware Advisory - UDF file system handling |
2011-08-17/a> | Rob VandenBrink | Putting all of Your Eggs in One Basket - or How NOT to do Layoffs |
2011-04-28/a> | Guy Bruneau | VMware ESXi 4.1 Security and Firmware Updates |
2011-03-08/a> | Jim Clausing | VMware ESX/ESXi security updates released, see http://www.vmware.com/security/advisories/VMSA-2011-0004.html |
2011-02-08/a> | Chris Mohan | VMWare Security Advisory |
2011-01-05/a> | Johannes Ullrich | VMWare Security Advisory VMSA-2011-0001 |
2010-07-13/a> | Jim Clausing | VMware Studio Security Update |
2010-05-30/a> | Kevin Liston | VMware ESX/ESXi Updates |
2010-04-09/a> | Mark Hofman | VMware has released the following patch "VMSA-2010-0007 VMware hosted products, vCenter Server and ESX patches resolve multiple security issues". Make sure you test before applying to production. |
2010-04-02/a> | Guy Bruneau | Security Advisory for ESX Service Console |
2010-03-30/a> | Pedro Bueno | VMWare Security Advisories Out |
2010-02-17/a> | Rob VandenBrink | Defining Clouds - " A Cloud by any Other Name Would be a Lot Less Confusing" |
2010-02-17/a> | Rob VandenBrink | Multiple Security Updates for ESX 3.x and ESXi 3.x |
2010-02-10/a> | Marcus Sachs | Datacenters and Directory Traversals |
2010-01-30/a> | Stephen Hall | New and updated VMWare advisories |
2010-01-26/a> | Rob VandenBrink | VMware vSphere Hardening Guide Draft posted for public review |
2009-11-21/a> | Mark Hofman | VMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html |
2009-10-27/a> | Rob VandenBrink | New VMware Desktop Products Released (Workstation, Fusion, ACE) |
2009-10-16/a> | Stephen Hall | VMWare updates ESX |
2009-10-02/a> | Stephen Hall | VMware Fusion updates to fixes a couple of bugs |
2009-08-21/a> | Rick Wanner | Updates to VMWare Products |
2009-07-11/a> | Rick Wanner | VMWare Security Advisories |
2009-07-01/a> | Bojan Zdrnja | New VMWare Security Advisory |
2009-05-29/a> | Lorna Hutcheson | VMWare Patches Released |
2009-04-14/a> | Swa Frantzen | VMware exploits - just how bad is it ? |
2009-04-10/a> | Stephen Hall | Patches for critical VMWare vulnerability |
2009-04-04/a> | Tony Carothers | Recent VMware Updates Available |
2009-01-31/a> | Swa Frantzen | VMware updates |
2008-09-19/a> | Bojan Zdrnja | VMWare ESX(i) 3.5 security patches |
2008-08-12/a> | Johannes Ullrich | VMWare ESX 3.5u2 Errors |
2008-06-01/a> | Mari Nichols | Updates to VMware resolve critical security issues |
2008-03-19/a> | Raul Siles | VMware updates resolve critical security issues (VMSA-2008-0005) |
ADVISORY |
2023-10-20/a> | Yee Ching Tok | VMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs |
2023-02-03/a> | Jim Clausing | VMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html |
2020-04-10/a> | Scott Fendley | Critical Vuln in vCenter vmdir (CVE-2020-3952) |
2018-10-17/a> | Russ McRee | VMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html |
2017-12-20/a> | Richard Porter | VMWare Security Advisory: VMSA-2017-0021: https://www.vmware.com/security/advisories/VMSA-2017-0021.html |
2016-08-31/a> | Deborah Hale | Cisco Security Advisories Issued |
2016-01-10/a> | Jim Clausing | VMware security update |
2015-12-19/a> | Russell Eubanks | VMWare Security Advisory |
2014-10-01/a> | Russ McRee | VMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html |
2014-09-12/a> | Chris Mohan | VMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html |
2014-04-11/a> | Rob VandenBrink | VMware Security Advisories / Patches released for 2 issues (NOT Heartbleed) - http://www.vmware.com/security/advisories/VMSA-2014-0003.html and http://www.vmware.com/security/advisories/VMSA-2014-0002.html |
2014-01-24/a> | Chris Mohan | Security Update for OS X for CVE-2014-1252 http://support.apple.com/kb/HT6117 |
2013-12-23/a> | Scott Fendley | VMWare ESX/ESXi Security Advisory |
2013-12-04/a> | Adrien de Beaupre | VMware Security Advisory VMSA-2013-0014 |
2013-09-17/a> | John Bambenek | Microsoft Releases Out-of-Band Advisory for all Versions of Internet Explorer |
2013-08-29/a> | Russ McRee | Suspect Sendori software |
2013-08-13/a> | Swa Frantzen | Microsoft security advisories: RDP and MD5 deprecation in Microsoft root certificates |
2013-08-02/a> | Chris Mohan | VMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html |
2013-06-11/a> | Swa Frantzen | Other Microsoft Black Tuesday News |
2013-05-31/a> | Chris Mohan | VMware releases new and updated security advisories |
2013-05-14/a> | Swa Frantzen | Microsoft Security Advisory 2846338 |
2013-02-22/a> | Chris Mohan | VMware releases new and updated security advisories |
2013-02-12/a> | Adam Swanger | Microsoft February 2013 Black Tuesday Update - Overview |
2013-02-01/a> | Jim Clausing | VMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html) |
2013-01-15/a> | Russ McRee | Cisco introducing Cisco Security Notices 16 JAN 2013 |
2013-01-09/a> | Rob VandenBrink | Security Update - Cisco Prime LMS (cisco-sa-20130109-lms - remote execution as root vulnerability) - advisory at: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130109-lms |
2013-01-09/a> | Rob VandenBrink | Security Update - Cisco 7900 Phones - cisco-sa-20130109-uipphone privilege escallation issue - advisory at: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130109-uipphone |
2012-12-11/a> | John Bambenek | Microsoft December 2012 Black Tuesday Update - Overview |
2012-11-13/a> | Jim Clausing | Microsoft November 2012 Black Tuesday Update - Overview |
2012-10-05/a> | Richard Porter | VMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html |
2012-09-27/a> | Kevin Shortt | Cisco IOS Security Advisory Bundle - http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_sep12.html |
2012-09-20/a> | Russ McRee | Apple and Cisco Security Advisories 19 SEP 2012 |
2012-08-31/a> | Johannes Ullrich | VMware Updates |
2012-07-13/a> | Russ McRee | VMWare Security Advisory 12 JUL 2012 |
2012-07-10/a> | Swa Frantzen | Microsoft revoking trust in Microsoft certificates - SA 2728973 |
2012-07-10/a> | Swa Frantzen | Microsoft fix-it to disable gadgets - SA 2719662 |
2012-06-21/a> | Russ McRee | Cisco Security Advisories 20 JUN 2012 |
2012-06-14/a> | Johannes Ullrich | VMWare Security Advisories |
2012-03-12/a> | Guy Bruneau | OpenSSL Security Update |
2012-02-29/a> | Russ McRee | Cisco Security Advisories - 29FEB2011 |
2012-01-31/a> | Russ McRee | Firefox 10 and VMWare advisories and updates |
2011-11-18/a> | Kevin Liston | Recent VMWare security advisories |
2011-10-05/a> | Jim Clausing | VMware Advisory - UDF file system handling |
2011-06-01/a> | Adrien de Beaupre | Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified IP Phones 7900 Series - http://www.cisco.com/warp/public/707/cisco-sa-20110601-phone.shtml |
2011-06-01/a> | Adrien de Beaupre | Cisco Security Advisory: Default Credentials Vulnerability in Cisco Network Registrar - http://www.cisco.com/warp/public/707/cisco-sa-20110601-cnr.shtml |
2011-06-01/a> | Adrien de Beaupre | Cisco Security Advisory: Default Credentials for root Account on the Cisco Media Experience Engine 5600 - http://www.cisco.com/warp/public/707/cisco-sa-20110601-mxe.shtml |
2011-06-01/a> | Adrien de Beaupre | Cisco Security Advisory: Multiple Vulnerabilities in Cisco AnyConnect Secure Mobility Client - http://www.cisco.com/warp/public/707/cisco-sa-20110601-ac.shtml |
2011-03-30/a> | Adrien de Beaupre | Two Cisco advisories: cisco-sa-20110330-nac and cisco-sa-20110330-acs |
2011-02-10/a> | Chris Mohan | Linksys WAP610N has Unauthenticated Root Console issue |
2011-02-08/a> | Chris Mohan | VMWare Security Advisory |
2010-09-18/a> | Rick Wanner | Microsoft Security Advisory for ASP.NET |
2010-07-21/a> | Adrien de Beaupre | Update on .LNK vulnerability |
2010-06-17/a> | Deborah Hale | FYI - Another bogus site |
2010-06-15/a> | Manuel Humberto Santander Pelaez | Apple releases advisory for Mac OS X - Multiple vulnerabilities discovered |
2010-06-05/a> | Guy Bruneau | Security Advisory for Flash Player, Adobe Reader and Acrobat |
2010-05-30/a> | Kevin Liston | VMware ESX/ESXi Updates |
2010-03-10/a> | Rob VandenBrink | Microsoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7 |
2010-02-17/a> | Rob VandenBrink | Cisco ASA5500 Security Updates - cisco-sa-20100217-asa |
2010-02-17/a> | Rob VandenBrink | Cisco Security Agent Security Updates: cisco-sa-20100217-csa |
2010-02-03/a> | Johannes Ullrich | Information Disclosure Vulnerability in Internet Explorer |
2010-01-21/a> | Johannes Ullrich | New Microsoft Advisory: Vulnerability in Windows Kernel Privilege Escalation (CVE-2010-0232) |
2009-11-14/a> | Adrien de Beaupre | Microsoft advisory for Windows 7 / Windows Server 2008 R2 Remote SMB DoS Exploit released |
2009-06-12/a> | Adrien de Beaupre | Google updates for Chrome |
2009-05-28/a> | Stephen Hall | Microsoft DirectShow vulnerability |
2008-09-24/a> | Deborah Hale | Flurry of Security Advisories from CISCO |
2008-06-01/a> | Mari Nichols | Updates to VMware resolve critical security issues |