9月揭露的VMware vCenter重大漏洞快修補!已出現被用於攻擊的情形
支付動態 · 2024-11-19

針對兩個月前修補的VMware vCenter漏洞CVE-2024-38812、CVE-2024-38813,本週博通提出警告,表示這些漏洞已被用於實際攻擊行動

今年9月博通公告VMware vCenter伺服器的記憶體緩衝區堆疊溢位漏洞CVE-2024-38812、權限提升漏洞CVE-2024-38813,本週這份公告內容更新,當中提到有人實際將這些漏洞用於攻擊行動。

這兩個漏洞影響vCenter Server、Cloud Foundation,其中又以CVE-2024-38812較為嚴重,CVSS風險為9.8(滿分10分);另一個漏洞CVE-2024-38813為高風險層級,CVSS風險為7.5。這些漏洞之所以被發現,是來自6月底中國舉行的漏洞挖掘競賽矩陣杯(Matrix Cup),由當時參賽隊伍TZL找到這些弱點。

值得留意的是,博通曾在10月表示,他們最初提供的更新軟體,對於CVE-2024-38812的修補並不完全,已套用9月更新程式的IT人員,仍須下載最新版軟體,才能獲得更完善的修補。

Popular articles
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
GAT Expo Puerto Rico Will Pulse with the New Era of Gaming in the Caribbean
Marketing
Gaming & Technology Expo Makes a Powerful Entrance in CDMX
Marketing
Online gambling, crypto pose ongoing money laundering risks in Philippines, analyst says
Southeast Asia
Brazil Proposes Raising Gambling Tax Rate to 24%, With Revenue Allocated to Social Security and Healthcare
Regulation
New Jersey July Gambling Revenue Hits $606M, Sweeps Casinos Banned
Regulation
Indiana online casino bill stalls in House committee
Regulation
GGC Awards 2026 Shines in Colombo: Honoring Leaders and Innovators in the iGaming Industry
HUIDU Focus
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
Vietnam’s Controlled Gaming Shift Gains Ground, But Domestic Demand Still Lags
Southeast Asia
1spin4win grows its Latin American presence by partnering with Fortuna Juegos
Online Game
1spin4win releases unique slot Don Catleone Hold and Win featuring gangster cats
Online Game
HUIDU Invites You to Booth T70 at iGB L!VE 2026 — Let’s Ignite London This July!
HUIDU Focus
British gambling levy rates confirmed for each vertical
Regulation
Across 6 Cities: HUIDU Invites You to 8 World Cup Parties Redefining High-Value Social Networking
HUIDU Focus
Home
Game
Cooperation
Find
My