Knowledge Base

Search the Knowledge Base: |
Search the Knowledge Base: |
VMware ESXi, Patch ESXe350-200904201-I-SG: Firmware Update
Details
Release Date: April 10, 2009
|
Download Size: 221 MB Download Filename: ESXe350-200904201-O-SG.zip md5sum: 1f35c8bd1f00261cdea52db8b6b98eca Note: The three ESXi patches for Firmware "I", VMware Tools "T," and the VI Client "C" are contained in a single offline "O" download file. |
|
Solution
Summaries and Symptoms
This patch fixes the following issues:
- A critical vulnerability in the virtual machine display function might allow a guest operating system to run code on the host. The Common Vulnerabilities and Exposures Project (cve.mitre.org) has assigned the name CVE-2009-1244 to this issue.
Deployment Considerations
None beyond the required patch bundles and reboot information listed in the table, above.
Patch Download and Installation
The typical way to apply patches to ESXi hosts is through the VMware Update Manager. For details, see the VMware Update Manager Administration Guide.
ESXi hosts can also be updated by downloading the most recent "O" (offline) patch bundle from http://support.vmware.com/selfsupport/download/ and installing the bundle using VMware Infrastructure Update or by using the vihostupdate command through the Remote Command Line Interface (RCLI). For details, see the ESX Server 3i Configuration Guide and the ESX Server 3i Embedded Setup Guide (Chapter 10, Maintaining ESX Server 3i and the VI Client) or the ESX Server 3i Installable Setup Guide (Chapter 11, Maintaining ESX Server 3i and the VI Client).
Note: ESXi hosts do not reboot automatically when you patch with the offline bundle.
Feedback
- KB Article: 1009853
- Updated: Aug 14, 2009
- Products:
VMware ESX - Product Versions:
VMware ESX 3.5.x

