vIDM vulnerability CVE-2024-1086
search cancel

vIDM vulnerability CVE-2024-1086

book

Article ID: 378988

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

This article covers the fix for the vulnerability  CVE-2024-1086 mentioned in National Institute of Standards and Technology

Environment

VMware Identity Manager 3.3.7

Cause

The nf_tables component can be exploited to achieve local privilege escalation.

Resolution

Workaround:

  • Create an environment snapshot.
  • Download the patch CSP-95247-Appliance-3.3.7.zip from the Broadcom portal.
  • Apply patch using VMware Aria Suite Lifecycle.