info
discussion
exploit
solution
references
VMware Products Directory Traversal Vulnerability
Solution:
The vendor has released an advisory and updates. Please see the references for details.
VMWare ESXi Server 3.5
VMWare ESXe350-200901401-O-SG.zip
http://download3.vmware.com/software/vi/ESXe350-200901401-O-SG.zip
VMWare ESXe350-200901401-O-SG.zip
ESXi 3.5 patch ESXe350-200901401-I-SG (Directory Traversal)
http://download3.vmware.com/software/vi/ESXe350-200901401-O-SG.zip
VMWare Server 1.0.9
VMWare VMware-server-1.0.10-203137.i386.rpm
VMware Server for Linux rpm
http://download3.vmware.com/software/vmserver/VMware-server-1.0.10-203 137.i386.rpm
VMWare VMware-server-1.0.10-203137.tar.gz
VMware Server for Linux
http://download3.vmware.com/software/vmserver/VMware-server-1.0.10-203 137.tar.gz
VMWare VMware-server-installer-1.0.10-203137.exe
VMware Server for Windows 32-bit and 64-bit
http://download3.vmware.com/software/vmserver/VMware-server-installer- 1.0.10-203137.exe
VMWare VMware-server-linux-client-1.0.10-203137.zip
VMware Server Linux client package
http://download3.vmware.com/software/vmserver/VMware-server-linux-clie nt-1.0.10-203137.zip
VMWare VMware-server-win32-client-1.0.10-203137.zip
VMware Server Windows client package
http://download3.vmware.com/software/vmserver/VMware-server-win32-clie nt-1.0.10-203137.zip
VMWare ESX Server 3.0.3
VMWare ESX303-200812406-BG.zip
ESX 3.0.3 patch ESX303-200812406-BG (Directory Traversal)
http://download3.vmware.com/software/vi/ESX303-200812406-BG.zip
Privacy Statement
Copyright 2010, SecurityFocus