Date Author Title

VMWARE ADVISORY

2023-10-20Yee Ching TokVMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs
2023-02-03Jim ClausingVMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html
2020-04-10Scott FendleyCritical Vuln in vCenter vmdir (CVE-2020-3952)
2018-10-17Russ McReeVMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html
2015-12-19Russell EubanksVMWare Security Advisory
2014-10-01Russ McReeVMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html
2014-09-12Chris MohanVMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html
2013-12-23Scott FendleyVMWare ESX/ESXi Security Advisory
2013-08-02Chris MohanVMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html
2013-05-31Chris MohanVMware releases new and updated security advisories
2013-02-22Chris MohanVMware releases new and updated security advisories
2013-02-01Jim ClausingVMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html)
2012-10-05Richard PorterVMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html
2012-08-31Johannes UllrichVMware Updates
2012-07-13Russ McReeVMWare Security Advisory 12 JUL 2012
2012-06-14Johannes UllrichVMWare Security Advisories
2012-01-31Russ McReeFirefox 10 and VMWare advisories and updates
2011-11-18Kevin ListonRecent VMWare security advisories
2011-10-05Jim ClausingVMware Advisory - UDF file system handling
2011-02-08Chris MohanVMWare Security Advisory
2010-05-30Kevin ListonVMware ESX/ESXi Updates
2008-06-01Mari NicholsUpdates to VMware resolve critical security issues

VMWARE

2023-10-20/a>Yee Ching TokVMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs
2023-05-14/a>Guy BruneauVMware Aria Operations addresses multiple Local Privilege Escalations and a Deserialization issue
2023-03-18/a>Xavier MertensOld Backdoor, New Obfuscation
2023-02-03/a>Jim ClausingVMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html
2021-11-04/a>Tom WebbXmount for Disk Images
2020-08-22/a>Guy BruneauVMware App Volumes patches address Stored Cross-Site Scripting (XSS) vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0019.html
2020-07-11/a>Guy BruneauVMware XPC Client validation privilege escalation vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0017.html
2020-06-15/a>Rick WannerVMWare Security Advisory - VMSA-2020-0013 - https://www.vmware.com/security/advisories/VMSA-2020-0013.html
2020-05-19/a>Rick WannerVMWare Security Advisory - VMSA-2020-0010 - https://www.vmware.com/security/advisories/VMSA-2020-0010.html
2020-05-09/a>Rick WannerVMWare vRealize Critical vulnerabilities due to SaltStack - VMSA-2020-0009
2020-04-10/a>Scott FendleyCritical Vuln in vCenter vmdir (CVE-2020-3952)
2018-11-20/a>Xavier MertensVMware Affected by Dell EMC Avamar Vulnerability
2018-10-17/a>Russ McReeVMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html
2018-05-22/a>Xavier MertensVMware Workstation and Fusion updates address signature bypass and multiple denial-of-service vulnerabilities https://www.vmware.com/security/advisories/VMSA-2018-0013.html
2017-12-20/a>Richard PorterVMWare Security Advisory: VMSA-2017-0021: https://www.vmware.com/security/advisories/VMSA-2017-0021.html
2017-09-16/a>Guy BruneauVMware ESXi, vCenter Server, Fusion and Workstation updates resolve multiple security vulnerabilities - https://www.vmware.com/security/advisories/VMSA-2017-0015.html
2017-03-29/a>Xavier MertensCritical VMware vulnerabilities disclosed
2017-01-31/a>Johannes UllrichVMWare Security Advisory for AirWatch http://www.vmware.com/security/advisories/VMSA-2017-0001.html
2016-11-23/a>Tom WebbVmware Patches VMSA-2016-0005.5, VMSA-2016-0018.3 and VMSA-2016-0021
2016-10-26/a>Johannes UllrichNew VMWare Security Advisory: VMSA-2016-0017 Information Disclosure in VMWare Fusion and VMWare Tools https://www.vmware.com/security/advisories/VMSA-2016-0017.html
2016-05-25/a>Rick WannerVMWare Security Advisories
2016-02-23/a>Xavier MertensVMware VMSA-2016-0002
2016-02-13/a>Guy BruneauVMware VMSA-2015-0007.3 has been Re-released
2016-01-10/a>Jim ClausingVMware security update
2015-12-19/a>Russell EubanksVMWare Security Advisory
2015-04-04/a>Didier StevensVMware Product Updates Address Critical Information Disclosure Issue In JRE
2014-12-05/a>Basil Alawi S.TaherVMware new and updated security advisories
2014-10-23/a>Russ McReeDigest: 23 OCT 2014
2014-10-01/a>Russ McReeVMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html
2014-09-12/a>Chris MohanVMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html
2014-08-14/a>Basil Alawi S.TaherThreats to virtual environments
2014-08-05/a>Johannes UllrichCenter for Internet Security Releases Benchmark for VMWare ESXi 5.5 https://benchmarks.cisecurity.org/downloads/form/index.cfm?download=esxi55.100
2014-04-15/a>Richard PorterVMWare Advisory VMSA-2014-0004 - Updates on OpenSSL HeartBleed http://www.vmware.com/security/advisories/VMSA-2014-0004.html
2014-04-11/a>Rob VandenBrinkVMware Security Advisories / Patches released for 2 issues (NOT Heartbleed) - http://www.vmware.com/security/advisories/VMSA-2014-0003.html and http://www.vmware.com/security/advisories/VMSA-2014-0002.html
2014-01-17/a>Russ McReeNew and updated VMWare security advisories - http://www.vmware.com/security/advisories
2013-12-23/a>Scott FendleyVMWare ESX/ESXi Security Advisory
2013-12-04/a>Adrien de BeaupreVMware Security Advisory VMSA-2013-0014
2013-11-15/a>Johannes UllrichVMWare Security Advisory: http://www.vmware.com/security/advisories/VMSA-2013-0013.html
2013-08-30/a>Kevin ListonVMware ESXi and ESX address an NFC Protocol Unhandled Exception
2013-08-02/a>Chris MohanVMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html
2013-06-11/a>Swa Frantzenvmware security advisory VMSA-2013-0008
2013-05-31/a>Chris MohanVMware releases new and updated security advisories
2013-02-22/a>Chris MohanVMware releases new and updated security advisories
2013-02-08/a>Johannes UllrichVMWare Advisories (ESX, Workstation, Fusion...) http://www.vmware.com/security/advisories/VMSA-2013-0002.html
2013-02-01/a>Jim ClausingVMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html)
2012-11-16/a>Guy BruneauVMware security updates for vSphere API and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2012-0016.html
2012-10-05/a>Richard PorterVMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html
2012-08-31/a>Johannes UllrichVMware Updates
2012-07-13/a>Russ McReeVMWare Security Advisory 12 JUL 2012
2012-06-14/a>Johannes UllrichVMWare Security Advisories
2012-06-04/a>Rob VandenBrinkvSphere 5.0 Hardening Guide Officially Released
2012-05-25/a>Guy BruneauVMware vMA Security Advisory VMSA-2012-0010 - http://www.vmware.com/security/advisories/VMSA-2012-0010.html
2012-05-03/a>Guy BruneauVMware Critical Security Issues Advisory - http://www.vmware.com/security/advisories/VMSA-2012-0009.html
2012-05-02/a>Bojan ZdrnjaMonitoring VMWare logs
2012-04-13/a>Daniel WesemannVMware ESX/ESXi privilege escalation vuln. advisory: http://www.vmware.com/security/advisories/VMSA-2012-0007.html
2012-03-16/a>Guy BruneauVMware New and Updated Security Advisories
2012-03-09/a>Guy BruneauVMware New and Updated Advisories
2012-01-31/a>Russ McReeFirefox 10 and VMWare advisories and updates
2011-11-18/a>Kevin ListonRecent VMWare security advisories
2011-10-13/a>Kevin ShorttVMware ESXi and ESX updates to third party libraries and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2011-0012.html
2011-10-05/a>Jim ClausingVMware Advisory - UDF file system handling
2011-08-17/a>Rob VandenBrinkPutting all of Your Eggs in One Basket - or How NOT to do Layoffs
2011-04-28/a>Guy BruneauVMware ESXi 4.1 Security and Firmware Updates
2011-03-08/a>Jim ClausingVMware ESX/ESXi security updates released, see http://www.vmware.com/security/advisories/VMSA-2011-0004.html
2011-02-08/a>Chris MohanVMWare Security Advisory
2011-01-05/a>Johannes UllrichVMWare Security Advisory VMSA-2011-0001
2010-07-13/a>Jim ClausingVMware Studio Security Update
2010-05-30/a>Kevin ListonVMware ESX/ESXi Updates
2010-04-09/a>Mark HofmanVMware has released the following patch "VMSA-2010-0007 VMware hosted products, vCenter Server and ESX patches resolve multiple security issues". Make sure you test before applying to production.
2010-04-02/a>Guy BruneauSecurity Advisory for ESX Service Console
2010-03-30/a>Pedro BuenoVMWare Security Advisories Out
2010-02-17/a>Rob VandenBrinkDefining Clouds - " A Cloud by any Other Name Would be a Lot Less Confusing"
2010-02-17/a>Rob VandenBrinkMultiple Security Updates for ESX 3.x and ESXi 3.x
2010-02-10/a>Marcus SachsDatacenters and Directory Traversals
2010-01-30/a>Stephen HallNew and updated VMWare advisories
2010-01-26/a>Rob VandenBrinkVMware vSphere Hardening Guide Draft posted for public review
2009-11-21/a>Mark HofmanVMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html
2009-10-27/a>Rob VandenBrinkNew VMware Desktop Products Released (Workstation, Fusion, ACE)
2009-10-16/a>Stephen HallVMWare updates ESX
2009-10-02/a>Stephen HallVMware Fusion updates to fixes a couple of bugs
2009-08-21/a>Rick WannerUpdates to VMWare Products
2009-07-11/a>Rick WannerVMWare Security Advisories
2009-07-01/a>Bojan ZdrnjaNew VMWare Security Advisory
2009-05-29/a>Lorna HutchesonVMWare Patches Released
2009-04-14/a>Swa FrantzenVMware exploits - just how bad is it ?
2009-04-10/a>Stephen HallPatches for critical VMWare vulnerability
2009-04-04/a>Tony CarothersRecent VMware Updates Available
2009-01-31/a>Swa FrantzenVMware updates
2008-09-19/a>Bojan ZdrnjaVMWare ESX(i) 3.5 security patches
2008-08-12/a>Johannes UllrichVMWare ESX 3.5u2 Errors
2008-06-01/a>Mari NicholsUpdates to VMware resolve critical security issues
2008-03-19/a>Raul SilesVMware updates resolve critical security issues (VMSA-2008-0005)

ADVISORY

2023-10-20/a>Yee Ching TokVMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs
2023-02-03/a>Jim ClausingVMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html
2020-04-10/a>Scott FendleyCritical Vuln in vCenter vmdir (CVE-2020-3952)
2018-10-17/a>Russ McReeVMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html
2017-12-20/a>Richard PorterVMWare Security Advisory: VMSA-2017-0021: https://www.vmware.com/security/advisories/VMSA-2017-0021.html
2016-08-31/a>Deborah HaleCisco Security Advisories Issued
2016-01-10/a>Jim ClausingVMware security update
2015-12-19/a>Russell EubanksVMWare Security Advisory
2014-10-01/a>Russ McReeVMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html
2014-09-12/a>Chris MohanVMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html
2014-04-11/a>Rob VandenBrinkVMware Security Advisories / Patches released for 2 issues (NOT Heartbleed) - http://www.vmware.com/security/advisories/VMSA-2014-0003.html and http://www.vmware.com/security/advisories/VMSA-2014-0002.html
2014-01-24/a>Chris MohanSecurity Update for OS X for CVE-2014-1252 http://support.apple.com/kb/HT6117
2013-12-23/a>Scott FendleyVMWare ESX/ESXi Security Advisory
2013-12-04/a>Adrien de BeaupreVMware Security Advisory VMSA-2013-0014
2013-09-17/a>John BambenekMicrosoft Releases Out-of-Band Advisory for all Versions of Internet Explorer
2013-08-29/a>Russ McReeSuspect Sendori software
2013-08-13/a>Swa FrantzenMicrosoft security advisories: RDP and MD5 deprecation in Microsoft root certificates
2013-08-02/a>Chris MohanVMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html
2013-06-11/a>Swa FrantzenOther Microsoft Black Tuesday News
2013-05-31/a>Chris MohanVMware releases new and updated security advisories
2013-05-14/a>Swa FrantzenMicrosoft Security Advisory 2846338
2013-02-22/a>Chris MohanVMware releases new and updated security advisories
2013-02-12/a>Adam SwangerMicrosoft February 2013 Black Tuesday Update - Overview
2013-02-01/a>Jim ClausingVMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html)
2013-01-15/a>Russ McReeCisco introducing Cisco Security Notices 16 JAN 2013
2013-01-09/a>Rob VandenBrinkSecurity Update - Cisco 7900 Phones - cisco-sa-20130109-uipphone privilege escallation issue - advisory at: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130109-uipphone
2013-01-09/a>Rob VandenBrinkSecurity Update - Cisco Prime LMS (cisco-sa-20130109-lms - remote execution as root vulnerability) - advisory at: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130109-lms
2012-12-11/a>John BambenekMicrosoft December 2012 Black Tuesday Update - Overview
2012-11-13/a>Jim ClausingMicrosoft November 2012 Black Tuesday Update - Overview
2012-10-05/a>Richard PorterVMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html
2012-09-27/a>Kevin ShorttCisco IOS Security Advisory Bundle - http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_sep12.html
2012-09-20/a>Russ McReeApple and Cisco Security Advisories 19 SEP 2012
2012-08-31/a>Johannes UllrichVMware Updates
2012-07-13/a>Russ McReeVMWare Security Advisory 12 JUL 2012
2012-07-10/a>Swa FrantzenMicrosoft revoking trust in Microsoft certificates - SA 2728973
2012-07-10/a>Swa FrantzenMicrosoft fix-it to disable gadgets - SA 2719662
2012-06-21/a>Russ McReeCisco Security Advisories 20 JUN 2012
2012-06-14/a>Johannes UllrichVMWare Security Advisories
2012-03-12/a>Guy BruneauOpenSSL Security Update
2012-02-29/a>Russ McReeCisco Security Advisories - 29FEB2011
2012-01-31/a>Russ McReeFirefox 10 and VMWare advisories and updates
2011-11-18/a>Kevin ListonRecent VMWare security advisories
2011-10-05/a>Jim ClausingVMware Advisory - UDF file system handling
2011-06-01/a>Adrien de BeaupreCisco Security Advisory: Multiple Vulnerabilities in Cisco Unified IP Phones 7900 Series - http://www.cisco.com/warp/public/707/cisco-sa-20110601-phone.shtml
2011-06-01/a>Adrien de BeaupreCisco Security Advisory: Default Credentials Vulnerability in Cisco Network Registrar - http://www.cisco.com/warp/public/707/cisco-sa-20110601-cnr.shtml
2011-06-01/a>Adrien de BeaupreCisco Security Advisory: Default Credentials for root Account on the Cisco Media Experience Engine 5600 - http://www.cisco.com/warp/public/707/cisco-sa-20110601-mxe.shtml
2011-06-01/a>Adrien de BeaupreCisco Security Advisory: Multiple Vulnerabilities in Cisco AnyConnect Secure Mobility Client - http://www.cisco.com/warp/public/707/cisco-sa-20110601-ac.shtml
2011-03-30/a>Adrien de BeaupreTwo Cisco advisories: cisco-sa-20110330-nac and cisco-sa-20110330-acs
2011-02-10/a>Chris MohanLinksys WAP610N has Unauthenticated Root Console issue
2011-02-08/a>Chris MohanVMWare Security Advisory
2010-09-18/a>Rick WannerMicrosoft Security Advisory for ASP.NET
2010-07-21/a>Adrien de BeaupreUpdate on .LNK vulnerability
2010-06-17/a>Deborah HaleFYI - Another bogus site
2010-06-15/a>Manuel Humberto Santander PelaezApple releases advisory for Mac OS X - Multiple vulnerabilities discovered
2010-06-05/a>Guy BruneauSecurity Advisory for Flash Player, Adobe Reader and Acrobat
2010-05-30/a>Kevin ListonVMware ESX/ESXi Updates
2010-03-10/a>Rob VandenBrinkMicrosoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7
2010-02-17/a>Rob VandenBrinkCisco Security Agent Security Updates: cisco-sa-20100217-csa
2010-02-17/a>Rob VandenBrinkCisco ASA5500 Security Updates - cisco-sa-20100217-asa
2010-02-03/a>Johannes UllrichInformation Disclosure Vulnerability in Internet Explorer
2010-01-21/a>Johannes UllrichNew Microsoft Advisory: Vulnerability in Windows Kernel Privilege Escalation (CVE-2010-0232)
2009-11-14/a>Adrien de BeaupreMicrosoft advisory for Windows 7 / Windows Server 2008 R2 Remote SMB DoS Exploit released
2009-06-12/a>Adrien de BeaupreGoogle updates for Chrome
2009-05-28/a>Stephen HallMicrosoft DirectShow vulnerability
2008-09-24/a>Deborah HaleFlurry of Security Advisories from CISCO
2008-06-01/a>Mari NicholsUpdates to VMware resolve critical security issues