vCenter Server 8.0U3g Photon OS Security Patches
search cancel

vCenter Server 8.0U3g Photon OS Security Patches

book

Article ID: 408892

calendar_today

Updated On:

Products

VMware vCenter Server 8.0

Issue/Introduction

This KB tracks the release of new RPM versions in VC 8.0 Update 3g for the Photon Operating System bundled in VMware vCenter Server.
You can associate the affected package with the CVE number.
 
Release Date
Build Number
Patch Name
Affect Package
New Package Version
CVEs Addressed
July 29, 2025
24853646
(Security fixes for Photon OS)
apache-tomcat9
9.0.104-1.ph4      
CVE-2025-24813, CVE-2025-31650, CVE-2025-31651
expat
2.7.1-1.ph4                 
CVE-2024-8176
freetype2
2.13.3-1.ph4 
CVE-2025-27363
gettext
0.21-6.ph4
CVE-2024-56171, CVE-2025-24928, CVE-2025-27113
libarchive
3.4.3-11.ph4 
CVE-2025-25724
libtasn1 
4.14-3.ph4
CVE-2024-12133
libxml2
2.9.12-16.ph4 
 CVE-2024-56171, CVE-2025-24928, CVE-2025-27113, CVE-2025-32415
linux
5.10.238-2.ph4  
CVE-2021-47200, CVE-2021-47489, CVE-2022-21546, CVE-2022-49651, CVE-2024-57795, CVE-2023-52531, CVE-2023-52621, CVE-2024-49991, CVE-2024-50067, CVE-2023-52752, CVE-2024-26739, CVE-2024-26928, CVE-2024-35863, CVE-2024-35864, CVE-2024-35867, CVE-2024-35868, CVE-2024-27056, CVE-2024-27415, CVE-2024-35839, CVE-2024-56604, CVE-2024-56658, CVE-2024-57979, CVE-2025-21726, CVE-2025-21727, CVE-2025-21731, CVE-2025-21756, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21791, CVE-2025-21796, CVE-2025-21858, CVE-2024-8805, CVE-2025-21703, CVE-2025-21759, CVE-2025-21863, CVE-2025-21999, CVE-2025-22035, CVE-2025-22056
openssh  
8.9p1-10.ph4
CVE-2025-32728
openssl
3.0.16-1.ph4
CVE-2024-9143
perl-Data-Validate-IP 
0.30-1.ph4
CVE-2021-29662
postgresql13 
13.20-1.ph4
CVE-2025-1094
postgresql14
14.17-1.ph4
CVE-2025-1094
python3-certifi
2023.11.17-2.ph4  
CVE-2024-39689
python3-idna
2.10-3.ph4
CVE-2024-3651
ruby
2.7.4-17.ph4                 
CVE-2025-27219, CVE-2025-27220
rubygem-nokogiri
1.13.6-1.ph4    
CVE-2018-25032, CVE-2021-30560, CVE-2022-24836, CVE-2022-29181
runc
1.1.14-1.ph4
CVE-2024-45310
xerces-c
3.2.5-1.ph4
CVE-2024-23807
vim
9.1.1441-1.ph4
CVE-2025-26603, CVE-2025-22134, CVE-2025-29768, CVE-2025-24014, CVE-2025-1215

Environment

VMware vCenter Server 8.0

Resolution

Fixed in vCenter Server 8.0 Update 3g.
Please refer to the Release notes.

Additional Information

To apply the Photon OS security patches to the vCenter Server Appliance, you can use one of the methods.
  • Deploy a new vCenter Server by using either the GUI or the CLI installer.
    For information about doing a fresh install of the vCenter Server Appliance, see Deploying the vCenter Server Appliance.
  • Upgrade to the version of the vCenter Server Appliance containing the latest Photon OS security patches by using either the GUI or the CLI installer.
    For information about upgrading the vCenter Server Appliance, see Upgrading the vCenter Server Appliance.
  • Patch the appliance either by using the appliance shell or the Appliance Management Interface.
    IMPORTANT
    : You can update the vCenter Server Appliance with Photon OS patches released within one and the same Update release. 
    For information on patching the vCenter Server Appliance, see Patching and Updating vCenter Server 8.0 Deployments.
  • Perform a file-based backup and restore, where in the restore process, you deploy a new appliance containing the latest Photon OS security patches..
    For information on performing a file-based backup and restore of the vCenter Server Appliance, see Restore vCenter Server from a File-Based Backup.
  • Migrate a vCenter Server on Windows instance to a version of the vCenter Server Appliance containing the latest Photon OS security patches.
    For information about performing a migration of vCenter Server on Windows to vCenter Server Appliance, see Migrating vCenter Server for Windows to vCenter Server Appliance.