This article covers the fixes made in VMware Aria Operations 8.18.2 from previous versions:
This release resolves CVE-2024-38830, CVE-2024-38831, CVE-2024-38832, CVE-2024-38833, and CVE-2024-38834. For more information on these vulnerabilities and their impact on VMware products, see VMSA-2024-0022.
Also, the following CVEs have been resolved :
Component Name |
CVE |
Apache XML Graphics Commons |
CVE-2020-11988 |
google-oauth-java-client |
CVE-2020-7692 |
CVE-2021-22573 |
|
Nimbus-JOSE-JWT |
CVE-2023-52428 |
PostgreSQL Database Server |
CVE-2024-7348 |
Procps |
CVE-2023-4016 |
reactor-netty |
CVE-2023-34054 |
CVE-2023-34062 |
|
sysstat |
CVE-2023-33204 |
Apache Portable Runtime |
CVE-2023-49582 |
linux_kernel |
CVE-2022-48872 |
CVE-2024-38381 |
|
CVE-2024-38630 |
|
CVE-2024-41096 |
|
CVE-2024-42271 |
|
CVE-2024-42280 |
|
CVE-2024-42284 |
|
CVE-2024-42285 |
|
CVE-2024-42301 |
|
CVE-2024-42302 |
|
CVE-2024-42313 |
|
CVE-2024-42314 |
|
CVE-2024-43858 |
|
CVE-2024-43873 |
|
CVE-2024-43882 |
|
CVE-2024-43900 |
|
CVE-2024-44934 |
|
CVE-2024-44947 |
|
CVE-2024-44974 |
|
CVE-2024-44983 |
|
CVE-2024-44985 |
|
CVE-2024-44986 |
|
CVE-2024-44987 |
|
CVE-2024-44989 |
|
CVE-2024-44998 |
|
CVE-2024-44999 |
|
CVE-2024-45026 |
|
CVE-2024-46673 |
|
CVE-2024-46674 |
|
CVE-2024-46738 |
|
CVE-2024-46743 |
|
CVE-2024-46747 |
|
CVE-2024-46756 |
|
CVE-2024-46757 |
|
CVE-2024-46758 |
|
CVE-2024-46759 |
|
CVE-2024-46782 |
|
CVE-2024-46798 |
|
CVE-2024-46800 |
|
CVE-2024-41071 |
|
CVE-2024-42228 |
|
openssl |
CVE-2024-5535 |
Aria Operations 8.18.2
VMware Aria Operations 8.18.2 can be applied to any 8.14.x - 8.18.x environment.
It is recommended to take snapshots following How to take a Snapshot of VMware Aria Operations before upgrading.