Impact of CVE-2026-49975 HTTP/2 Bomb vulnerability on vCenter 8.0U3
search cancel

Impact of CVE-2026-49975 HTTP/2 Bomb vulnerability on vCenter 8.0U3

book

Article ID: 446355

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

Security scanners may report that your VMware vCenter 8.x  are vulnerable to the following CVE :

CVE-2026-49975

Environment

VMware vCenter 8.0 U3

Resolution

Broadcom is aware of CVE-2026-49975. Please refer to the release notes for existing and forthcoming product releases for any updates in relation to this CVE. Should you require further information please contact  Broadcom Support.

 

Additional Information

 vCenter 8.0.3 is vulnerable to DoS attacks exploiting the CVE-2026-49975 security vulnerability.

The CVE-2026-49975 security vulnerability would be addressed in the next patch to the vCenter 8.0.3 product.