VMware's response to multiple CVE's associated with Healthwatch tile version 2.2.7 (using mysql version 8.0.32-24).
search cancel

VMware's response to multiple CVE's associated with Healthwatch tile version 2.2.7 (using mysql version 8.0.32-24).

book

Article ID: 377265

calendar_today

Updated On:

Products

VMware Tanzu Application Service

Issue/Introduction

 

Multiple vulnerabilities (CVE's) detected for Healthwatch tile version 2.2.7 (using mysql version 8.0.32-24).
CVE-2024-21015

CVE-2024-20993

CVE-2023-6129

CVE-2024-20994

CVE-2024-20998

CVE-2024-21000

CVE-2024-21008

CVE-2024-21009

CVE-2024-21013

CVE-2024-21047

CVE-2024-21054

CVE-2024-21060

CVE-2024-21062

CVE-2024-21069

CVE-2024-21087

CVE-2024-21096

CVE-2024-21102

CVE-2024-21049

CVE-2024-21050

CVE-2024-21051 

CVE-2024-21052 

CVE-2024-21053 

CVE-2024-21056

CVE-2024-21055 

CVE-2024-21057

CVE-2024-21137

CVE-2024-21135 

CVE-2024-21159

CVE-2024-21160 

CVE-2024-21166 

CVE-2024-21157 

CVE-2024-20996 

CVE-2024-21125 

CVE-2024-21127

CVE-2024-21129 

CVE-2024-2113 

CVE-2024-21134 

CVE-2024-21142 

CVE-2024-21162 

CVE-2024-21163 

CVE-2024-21171

CVE-2024-21173 

CVE-2024-21177 

CVE-2024-21179 

CVE-2024-21165

CVE-2024-21176

 

Resolution

VMware has recently became aware of this issue/vulnerabilities and is investigating.  This article will be updated and can be used to track progress regarding said CVE's.

Subscribing to this article will allow users to follow along for any official updates and/or recommendation(s) from our R&D Vulnerability team.

 

Update (10-3-2024): VMware security team shares that they do not see any of these vulnerabilities reported in the latest release HW v2.3.1 CVE scan.  If faced with the above CVE's, the recommendation at this time is upgrade Healthwatch to v2.3.1.