HPE SimpliVity
1820256 Members
2623 Online
109622 Solutions
New Discussion

VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

 
MarioE
Trusted Contributor

VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

VMware vCenter Server has a critical security vulnerability:

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24968?utm_campaign=Security&utm_medium=email&_hsenc=p2ANqtz-_JLJhXd9io_bjWf2dRteyMey5TGjx1KqlmDkmpw4lGfal8tfLEWCGVU8z0IJCmktgu4kdD6tcQx9jjy4e5nnongE7xeQ&_hsmi=325212207&utm_content=325212207&utm_source=hs_email

Is fixed in version 8.0 U3b

vcenter1.jpg

My VMware vCenter Server Version is 8.0U2d. This is the latest version supported by SimpliVity:

https://support.hpe.com/hpesc/public/docDisplay?docId=a00117319en_us

vcenter2.jpg

@HPE: When can I update Simplivity to version 8.0U3 so that I can close this security vulnerability?
Is there anyone else with SimpliVity on VMware vCenter Server Version 8 that is affected by this issue? How do you solve this problem?

8 REPLIES 8
support_s
System Recommended

Query: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

System recommended content:

1. HPE OneView for VMware vCenter 11.6.0 Release Notes | Installation instructions

2. HPE OneView for VMware vCenter 11.4.0 Installation Guide | HPE OneView for VMware vCenter

 

Please click on "Thumbs Up/Kudo" icon to give a "Kudo".

 

Thank you for being a HPE valuable community member.


Accept or Kudo

MarioE
Trusted Contributor

Betreff: Query: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-

@support_s Very helpful links for my problem!?

AlexandreC
Visitor

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

Has anyone made the upgrade to Vcenter 7.0 U3s

Brian_Galante
Frequent Advisor

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

I'm waiting until like Tuesday next week after I see some canaries come back from the coal mine.

Kipp_Glover
HPE Pro

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

Good day MarioE,

HPE plans to release an update to the Interop Guide on September 30th. This update will support VCSA 8.0U3a.  As you mentioned, with 8.0U3a supported you can upgrade to 8.0U3b even though it is not listed.  I hope this helps.  

/Kipp



I work at HPE
HPE Support Center offers support for your HPE services and products when and how you need it. Get started with HPE Support Center today.
[Any personal opinions expressed are mine, and not official statements on behalf of Hewlett Packard Enterprise]
Accept or Kudo
franke1
Senior Member

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

Hi Kipp_Glover

Can I also upgrade from version 7.0 U3r to 7.0 U3s even if this is not listed in the Interop Guide?

Saluti
Levin

AlexandreC
Visitor

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

We upgraded to Vcenter 7.0 U3s last Friday and no issues so far.

Kipp_Glover
HPE Pro

Re: VMware vCenter Server vulnerabilities (CVE-2024-38812 & CVE-2024-38813)

Good day Levin!

Yes, the upgrade from VCSA 7.0U3r to 7.0U3s is supported.   

Cheers!
/Kipp



I work at HPE
HPE Support Center offers support for your HPE services and products when and how you need it. Get started with HPE Support Center today.
[Any personal opinions expressed are mine, and not official statements on behalf of Hewlett Packard Enterprise]
Accept or Kudo