Zero Day Initiative - CVE-2024-37079: VMware vCenter Server Integer Underflow Code Execution Vulnerability
Briefly

An integer underflow vulnerability in VMware vCenter Server allows unauthenticated remote attackers to exploit by sending a crafted DCERPC packet, resulting in a possible heap buffer overflow.
Exploitation of the vulnerability could allow arbitrary code execution within the context of the vulnerable VMware vCenter Server processes, posing a significant security risk to data centers.
VMware vCenter Server is crucial for managing virtual infrastructures; its reliance on DCERPC and MSRPC protocols means this vulnerability could impact various Microsoft services integration.
The vulnerability affects components within the VMware ecosystem, such as VMware Certificate Management Service, which makes it critical to patch to avoid potential exploitation.
Read at Zero Day Initiative
[
]
[
|
]