Release date:
Updated on: 2012-11-19
Affected Systems:
VMWare ESXi 4.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56571
Cve id: CVE-2012-5703
VMware ESX Server is an enterprise-level virtual computer software for any system environment.
ESXi 4.1 and ESX 4.1 can be exploited to crash the server when handling RetrieveProp or RetrievePropEx SOAP method requests.
<* Source: Sebastian Tello
Link: http://secunia.com/advisories/51263/
Http://secunia.com/advisories/51317/
Http://www.vmware.com/security/advisories/VMSA-2012-0016.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
VMWare
------
VMWare has released a Security Bulletin (VMSA-2012-0016) and patches for this:
VMSA-2012-0016: VMware security updates for vSphere API and ESX Service Console
Link: http://www.vmware.com/security/advisories/VMSA-2012-0016.html