RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: Act Now: VMware Releases Patch for Critical vCenter Server RCE Vulnerability
Post by: ixsky on
Act Now: VMware Releases Patch for Critical vCenter Server RCE Vulnerability

VMware has released security updates to address a critical flaw in the vCenter Server that could result in remote code execution on affected systems.
The issue, tracked as CVE-2023-34048 (CVSS score: 9.8), has been described as an out-of-bounds write vulnerability in the implementation of the DCE/RPC protocol.
"A malicious actor with network access to vCenter Server may trigger an out-of-bounds

Source: Act Now: VMware Releases Patch for Critical vCenter Server RCE Vulnerability (https://thehackernews.com/2023/10/act-now-vmware-releases-patch-for.html)