Knowledge Base

The VMware Knowledge Base provides support solutions, error messages and troubleshooting guides
 
Search the VMware Knowledge Base (KB)   View by Article ID
 

VMware ESX 4.1 Patch ESX410-201010402-SG: Updates GnuTLS, NSS, and openSSL (1027014)

Details

Release date:  November 15, 2010

Patch Classification Security
Build For build information, see KB 1027027.
Host Reboot Required Yes
Virtual Machine Migration or Shutdown Required Yes
PRs Fixed 554433, 554430, 550693, and 550696
Affected Hardware N/A
Affected Software N/A
VIBs Included gnutls, nspr, nss, openssl, and openssl097a
Related CVE numbers CVE-2009-2409, CVE-2009-3245, CVE-2010-0433, and CVE-2009-3555

 

Solution

Summaries and Symptoms

This patch updates the following packages and RPMs to fix multiple security issues:

  • Updates the GnuTLS RPM for ESX service console to gnutls-1.4.1-3.8.4483.vmw, which fixes two security issues.
    The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the names CVE-2009-2409 and CVE-2009-3555 to these issues.
  • Updates the NSS RPM and NSPR RPM for ESX service console to nss-3.12.6-1.4530.vmw and nspr-4.8.4-1.4530.vmw, which fix a security issue.
    The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2009-3555 to this issue.
  • Updates the openSSL RPM for ESX service console to openssl-0.9.8e-12.6.4644.vmw, which fixes multiple security issues.
    The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the names CVE-2009-3245, CVE-2009-3555, and CVE-2010-0433 to these issues.
  • Updates openSSL 0.9.7a package for ESX service console to openssl097a-0.9.7a-9.2.4534.vmw, which fixes a security issue.
    The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2009-3555 to this issue.

Deployment Considerations

None beyond the required patch bundles and reboot information listed in the table above.

Patch Download and Installation

See the VMware vCenter Update Manager Administration Guide for instructions on using Update Manager to download and install patches to automatically update ESX 4.1 hosts.

To update ESX 4.1 hosts without using Update Manager, download the patch ZIP file from http://support.vmware.com/selfsupport/download/ and install the bulletin by using esxupdate from the command line of the host. For more information, see the ESX 4 Patch Management Guide.

Request a Product Feature

To request a new product feature or to provide feedback on a VMware product, please visit the Request a Product Feature page.

Feedback

  • 1 Ratings

Did this article help you?
This article resolved my issue.
This article did not resolve my issue.
This article helped but additional information was required to resolve my issue.
What can we do to improve this information? (4000 or fewer characters)
  • 1 Ratings
Actions
KB: