ラベル VMware ESX Server の投稿を表示しています。 すべての投稿を表示
ラベル VMware ESX Server の投稿を表示しています。 すべての投稿を表示

2011-06-07

VMware ESX Server

ソフト名:VMware ESX Server 3.x
回避策:VMSA-2011-0009にて対応
脆弱性:DoS攻撃, インデックスエラー, 権限の昇格, セキュリティ制限の回避, サードパーティ製ドライバパケットフィルタのエラー
CVE:CVE-2009-3080, CVE-2009-4536, CVE-2010-1188, CVE-2010-2240
危険性:Medium Risk

VMware ESXi, VMware ESX Server, VMware Fusion, VMware Player, VMware Workstation

ソフト名:VMware ESXi 3.x/4.x, VMware ESX Server 3.x/4.x, VMware Fusion 3.x, VMware Player 3.x, VMware Workstation 7.x
回避策:VMSA-2011-0009にて対応
脆弱性:機密情報の奪取, 権限の昇格, シムリンク攻撃, ファイルパーミッションの操作
CVE:CVE-2011-1787, CVE-2011-2145, CVE-2011-2146
危険性:Medium Risk

VMware ESXi, VMware ESX Server

ソフト名:VMware ESXi 3.x/4.x, VMware ESX Server 3.x/4.x
回避策:VMSA-2011-0009にて対応
脆弱性:セキュリティ制限の回避, サードパーティ製ドライバパケットフィルタのエラー
CVE:CVE-2009-4536
危険性:Medium Risk

2011-05-04

Likewise Enterprise, Likewise Open, VMware ESX Server, VMware ESXi

ソフト名:Likewise Software Likewise Enterprise build 7845未満の5.3/build 178未満の6.0, Likewise Software Likewise Open build 7845未満の5.3/build 8325未満の6.0, VMware ESX Server 4.x, VMware ESXi 4.x
回避策:アップデート, LWSA-2011-001にて対応
脆弱性:DoS攻撃, サービスの終了, アサーションエラー, セキュリティ制限の回避, スプーフィング, 権限の昇格
CVE:CVE-2010-1323, CVE-2010-1324, CVE-2010-2240, CVE-2010-4020, CVE-2010-4021, CVE-2011-1785, CVE-2011-1786
危険性:Medium Risk

2011-03-09

VMware ESX Server

ソフト名:VMware ESX Server 4.0/4.1
回避策:VMSA-2011-0004にて対応
脆弱性:セキュリティ制限の回避, データ操作, 機密情報の奪取, 権限の昇格, DoS攻撃, ハードリンク作成, 不正アクションの実行, キャッシュへのアクセス, サーバのクラッシュ, シムリンク攻撃, ファイル操作
ソース:
http://www.vmware.com/products/vsphere/esxi-and-esx/index.html
http://www.vmware.com/security/advisories/VMSA-2011-0004.html
http://secunia.com/advisories/40028/
http://secunia.com/advisories/40978/
http://secunia.com/advisories/41654/
http://secunia.com/advisories/42088/
http://secunia.com/advisories/42374/
http://secunia.com/advisories/42435/
http://secunia.com/advisories/43675/
http://dvw-j.blogspot.com/2010/12/isc-bind.html
http://dvw-j.blogspot.com/2010/12/isc-bind_07.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2059
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3316
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3435
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3613
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3614
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3762
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3853
CVE:CVE-2010-2059, CVE-2010-3316, CVE-2010-3435, CVE-2010-3613, CVE-2010-3614, CVE-2010-3762, CVE-2010-3853
危険性:Medium Risk

VMware ESX Server, VMware ESXi

ソフト名:VMware ESX Server 4.0/4.1, VMware ESXi 4.0/4.1
回避策:VMSA-2011-0004にて対応
脆弱性:DoS攻撃, 不特定のエラー, CPUリソースの浪費
ソース:
http://www.vmware.com/products/vsphere/esxi-and-esx/index.html
http://www.vmware.com/products/vsphere-hypervisor/index.html
http://www.vmware.com/security/advisories/VMSA-2011-0004.html
http://secunia.com/advisories/43601/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3609
CVE:CVE-2010-3609
危険性:Medium Risk

2011-02-15

VMware ESX Server, VMware ESXi

ソフト名:VMware ESX Server 3.x/4.x, VMware ESXi 3.x/4.x
回避策:VMSA-2011-0003にて対応
脆弱性:DoS攻撃, システムアクセス, 解放後使用エラー, バッファオーバーフロー
ソース:
http://www.vmware.com/products/vsphere/esxi-and-esx/index.html
http://www.vmware.com/products/vsphere-hypervisor/index.html
http://www.vmware.com/security/advisories/VMSA-2011-0003.html
http://secunia.com/advisories/40906/
http://secunia.com/advisories/42243/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2939
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3864
CVE:CVE-2010-2939, CVE-2010-3864
危険性:Medium Risk

VMware ESX Server

ソフト名:VMware ESX Server 4.1
回避策:アップデート, VMSA-2011-0003にて対応
脆弱性:機密情報の奪取, セキュリティ制限の回避, アカウントの操作
ソース:
http://www.vmware.com/products/vsphere/esxi-and-esx/index.html
http://www.vmware.com/security/advisories/VMSA-2011-0003.html
http://secunia.com/advisories/32119/
http://secunia.com/advisories/35230/
http://secunia.com/advisories/43314/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3825
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1384
CVE:CVE-2008-3825, CVE-2009-1384
危険性:Medium Risk

VMware ESX Server

ソフト名:VMware ESX Server 4.x
回避策:VMSA-2011-0003にて対応
脆弱性:セキュリティ制限の回避, 機密情報の奪取, 権限の昇格, DoS攻撃
ソース:
http://www.vmware.com/products/vsphere/esxi-and-esx/index.html
http://www.vmware.com/security/advisories/VMSA-2011-0003.html
http://secunia.com/advisories/37658/
http://secunia.com/advisories/38133/
http://secunia.com/advisories/38229/
http://secunia.com/advisories/38317/
http://secunia.com/advisories/38354/
http://secunia.com/advisories/38499/
http://secunia.com/advisories/38502/
http://secunia.com/advisories/38594/
http://secunia.com/advisories/38718/
http://secunia.com/advisories/39982/
http://secunia.com/advisories/40205/
http://secunia.com/advisories/40691/
http://secunia.com/advisories/41321/
http://secunia.com/advisories/41462/
http://secunia.com/advisories/43315/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4308
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0003
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0007
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0008
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0291
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0307
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0410
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0415
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0437
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0622
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0730
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1084
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1085
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1086
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1087
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1088
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1173
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1187
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1436
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1437
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1641
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2066
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2070
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2226
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2248
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2521
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2524
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3081
CVE:CVE-2009-4308, CVE-2010-0003, CVE-2010-0007, CVE-2010-0008, CVE-2010-0291, CVE-2010-0307, CVE-2010-0410, CVE-2010-0415, CVE-2010-0437, CVE-2010-0622, CVE-2010-0730, CVE-2010-1084, CVE-2010-1085, CVE-2010-1086, CVE-2010-1087, CVE-2010-1088, CVE-2010-1173, CVE-2010-1187, CVE-2010-1436, CVE-2010-1437, CVE-2010-1641, CVE-2010-2066, CVE-2010-2070, CVE-2010-2226, CVE-2010-2248, CVE-2010-2521, CVE-2010-2524, CVE-2010-3081
危険性:Medium Risk