Multiple Vulnerabilities Detected in Site Recovery Manager
search cancel

Multiple Vulnerabilities Detected in Site Recovery Manager

book

Article ID: 410329

calendar_today

Updated On:

Products

VMware Live Recovery

Issue/Introduction

The following CVEs have been reported by the vulnerability scanner(Nessus ) for Live Recovery Appliance.

CVE ID vulnerability

Photon version

Package Name

Affected version

Resolved version

CVE-2025-1372

Photon OS 4.0

elfutils

0.181

0.181-8.ph4

CVE-2025-1377

Photon OS 4.0

elfutils

0.181

0.181-8.ph4

CVE-2025-1376

Photon OS 4.0

elfutils

0.181

0.181-8.ph4

CVE-2025-1352

Photon OS 4.0

elfutils

0.181

0.181-8.ph4

CVE-2024-8096

Photon OS 4.0

curl

8.7.1-3

8.12.0-1.ph4

CVE-2024-11053

Photon OS 4.0

Curl

8.7.1

8.12.0-1.ph4

CVE-2025-0167

Photon OS 4.0

curl

8.7.1

8.12.0-1.ph4

CVE-2025-32728

Photon OS 4.0

openssh

9.3p2-1.ph5

9.3p2-13.ph5

CVE-2025-27363

Photon OS 4.0

freetype2

2.13.0

2.13.3-1.ph4

CVE-2024-8176    

Photon OS 4.0

expat                    

2.2.9-12    

2.7.1-1.ph4

CVE-2025-22247    

Photon OS 4.0

open-vm-tools 

12.5.0-1.ph4

12.5.0-2.ph4    

Environment

Vmware Live Recovery 9.x

Resolution

VMware By Broadcom is aware of CVE's.

Please refer to the release notes for existing and forthcoming product releases for any updates in relation to this CVE.

Should you require further information please contact Broadcom Support