Addressing CVE-2023-52604 / CVE-2024-34459 / CVE-2024-10979 / CVE-2025-1094 on vCenter 7.0
search cancel

Addressing CVE-2023-52604 / CVE-2024-34459 / CVE-2024-10979 / CVE-2025-1094 on vCenter 7.0

book

Article ID: 390921

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

Following vulnerabilities are reported in the vCenter 7.0:

Version 7.0.3
Build: 24322018

Plugin ID:203815 CVE-2023-52604 :Photon OS 3.0: Linux PHSA-2024-3.0-0738
Plugin ID:203815 CVE-2024-34459 :Photon OS 3.0: Libxml2 PHSA-2024-3.0-0787
Plugin ID:213416 CVE-2024-10979 :Photon OS 3.0: Postgresql13 PHSA-2024-3.0-0806
Plugin ID:216586 CVE-2025-1094 :PostgreSQL 13.x < 13.19 / 14.x < 14.16 / 15.x < 15.11 / 16.x < 16.7 / 17.x < 17.3 SQLi

Environment

vCenter server 7.0.

Resolution

The above vulnerabilities are addressed in  vCenter Server 7.0 U3v (Build 24730281). Please update the vCenter Server to version 7.0 Update 3v, which includes the fix.

Refer to : Patching/Updating VMware vCenter Server Appliance VCSA through Appliance Management Interface VAMI