logo

VMware Product Security Update Advisory (CVE-2024-38812, CVE-2024-38813)

ID: 6a043847-af17-526a-9cbd-92b1d5839c17

STIX ID: report--6a043847-af17-526a-9cbd-92b1d5839c17

Feed Name: ASEC

Threat Score
75/100

Date Published: 2024-09-18

Date Updated: 2026-04-26

Author: ATCP

...
...

VMware released an update addressing two vCenter Server vulnerabilities (CVE-2024-38812 and CVE-2024-38813): a DCERPC heap overflow and a remotely exploitable privilege-escalation flaw. Affected versions include vCenter Server 8.0 and 7.0 and VMware Cloud Foundation 4.x/5.x; vendor-provided patches (e.g., 8.0 U3b, 7.0 U3) are available with guidance in VMSA-2024-0019.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.