<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New CVE's in HPE SimpliVity</title>
    <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234148#M5218</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.hpe.com/t5/user/viewprofilepage/user-id/1804273"&gt;@Kipp_Glover&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;I have HPE esxi 8.0 syn , I didn’t find patch for this CVE’s please need your support&lt;/P&gt;</description>
    <pubDate>Fri, 31 Jan 2025 06:43:23 GMT</pubDate>
    <dc:creator>Omareid1</dc:creator>
    <dc:date>2025-01-31T06:43:23Z</dc:date>
    <item>
      <title>New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7209583#M4646</link>
      <description>&lt;P&gt;There is a vulnerability I was notified about for ESX. Can we install the ESXi7.0U3p update?&lt;/P&gt;&lt;P&gt;Or does HPE have a timeframe when we will be able to?&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;CVE-2024-22252, &lt;/SPAN&gt;&lt;SPAN&gt;CVE-2024-22253, CVE-2024-22254, CVE-2024-22255&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.vmware.com/security/advisories/VMSA-2024-0006.html" target="_blank"&gt;https://www.vmware.com/security/advisories/VMSA-2024-0006.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2024 04:04:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7209583#M4646</guid>
      <dc:creator>Brian_Galante</dc:creator>
      <dc:date>2024-03-20T04:04:31Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7209587#M4650</link>
      <description>&lt;P&gt;Good day Brian!&lt;/P&gt;&lt;P&gt;SimpliVity will shortly publish a Customer Notice on this most recent patch from VMware, ESXi 7.0 U3p.&amp;nbsp;&lt;/P&gt;&lt;P&gt;SimpliVity plans to release a SimpliVity ESXi 7.0 U3p Custom Offline Bundle near the end of May 2024.&amp;nbsp; If a customer cannot wait for the SimpliVity custom bundle we recommend they consume the patch directly from VMware.&amp;nbsp; Refer to the ESXi 7.0 U3p release notes for installation.&amp;nbsp; Our data shows that over 500 customer nodes have successfully installed the ESXi 7.0 U3p patch.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The SimpliVity Interoperability Guide will be updated once the SimpliVity ESXi 7.0 U3p Offline Custom Bundle is released.­&lt;/P&gt;&lt;P&gt;Cheers!&lt;BR /&gt;/Kipp&lt;/P&gt;</description>
      <pubDate>Tue, 19 Mar 2024 20:20:13 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7209587#M4650</guid>
      <dc:creator>Kipp_Glover</dc:creator>
      <dc:date>2024-03-19T20:20:13Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234148#M5218</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.hpe.com/t5/user/viewprofilepage/user-id/1804273"&gt;@Kipp_Glover&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;I have HPE esxi 8.0 syn , I didn’t find patch for this CVE’s please need your support&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jan 2025 06:43:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234148#M5218</guid>
      <dc:creator>Omareid1</dc:creator>
      <dc:date>2025-01-31T06:43:23Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234204#M5220</link>
      <description>&lt;P&gt;Good day Omareid1,&lt;/P&gt;&lt;P&gt;I assume when you say you have ESXi 8.0 syn, you are referring to the ESXi 8.0 Custom bundle for Synergy.&amp;nbsp; &amp;nbsp;I would recommend that you use the SimpliVity ESXi Custom bundles for SimpliVity.&amp;nbsp; &amp;nbsp;If you take a look at the Broadcom Security Advisory for these CVEs in the "Response Matrix", it is noted these vulnerabilities were fixed in ESXi 8.0 U1d (23299997) and ESXi 8.0 U2sb (23305545).&amp;nbsp; &amp;nbsp;Here is the link to the security advisory:&amp;nbsp;&amp;nbsp;&lt;A href="https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24266" target="_blank"&gt;https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24266&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers!&lt;BR /&gt;/Kipp&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jan 2025 15:07:00 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234204#M5220</guid>
      <dc:creator>Kipp_Glover</dc:creator>
      <dc:date>2025-01-31T15:07:00Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234208#M5221</link>
      <description>Hi kipp&lt;BR /&gt;&lt;BR /&gt;Thank you for reply..&lt;BR /&gt;&lt;BR /&gt;Actually,I used ESXi 8.0 U1d (23299997) patch but i got Error “ profile ( updated )&lt;BR /&gt;HPE-custom-syn-AddOn_800.0.0.11.1.5- is missing component (s) Esxi.Make sure the image contains these component (s) at a version equal or higher than the version found in the Esxi release version 8.0.1”&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 31 Jan 2025 15:56:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234208#M5221</guid>
      <dc:creator>Omareid1</dc:creator>
      <dc:date>2025-01-31T15:56:05Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234215#M5222</link>
      <description>&lt;P&gt;That is the Synergy ESXi bundle you are using.&amp;nbsp; You need to use the SimpliVity Custom ESXi Bundle.&amp;nbsp; You can find the SimpliVity ESXi Custom bundles link on the &lt;A href="http://www.hpe.com/storage/SimpliVitySoftwareReleases" target="_blank" rel="noopener"&gt;SimpliVity Software Releases&lt;/A&gt; website.&amp;nbsp;&lt;/P&gt;&lt;P&gt;SimpliVity runs on Proliant hardware; the error you see could be related to this.&amp;nbsp;&lt;/P&gt;&lt;DIV&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ESXi custom bundle.png" style="width: 1261px;"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/146587iA153EC19FF25AB24/image-size/large?v=v2&amp;amp;px=2000" role="button" title="ESXi custom bundle.png" alt="ESXi custom bundle.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jan 2025 16:50:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234215#M5222</guid>
      <dc:creator>Kipp_Glover</dc:creator>
      <dc:date>2025-01-31T16:50:02Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234449#M5227</link>
      <description>&lt;P&gt;Dear&amp;nbsp;&lt;SPAN&gt;Kipp&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Thanks for your replay..&lt;/P&gt;&lt;P&gt;I can use the below Synergy versions for close the&amp;nbsp;&lt;SPAN&gt;vulnerabilities ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;BR,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;OMAR&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Synergy 480 Gen10.png" style="width: 400px;"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/146655iFE0B0D331CDC5BC7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Synergy 480 Gen10.png" alt="Synergy 480 Gen10.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2025 08:30:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234449#M5227</guid>
      <dc:creator>Omareid1</dc:creator>
      <dc:date>2025-02-05T08:30:36Z</dc:date>
    </item>
    <item>
      <title>Re: New CVE's</title>
      <link>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234476#M5229</link>
      <description>&lt;P&gt;Hi Omar!&lt;/P&gt;&lt;P&gt;You should use the SimpliVity ESXi offline custom bundles.&amp;nbsp; Don't use the Synergy bundles for SimpliVity.&amp;nbsp;&lt;/P&gt;&lt;P&gt;/Kipp&lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2025 19:05:57 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-simplivity/new-cve-s/m-p/7234476#M5229</guid>
      <dc:creator>Kipp_Glover</dc:creator>
      <dc:date>2025-02-05T19:05:57Z</dc:date>
    </item>
  </channel>
</rss>

