First published: Tue Oct 20 2020(Updated: )
VMware ESXi OpenSLP contains a use-after-free vulnerability that allows an attacker residing in the management network with access to port 427 to perform remote code execution.
Credit: security@vmware.com security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Cloud Foundation | >=3.0<3.10.1.1 | |
VMware Cloud Foundation | >=4.0<4.1 | |
VMware ESXi | =6.5 | |
VMware ESXi | =6.5-2 | |
VMware ESXi | =6.5-650-201701001 | |
VMware ESXi | =6.5-650-201703001 | |
VMware ESXi | =6.5-650-201703002 | |
VMware ESXi | =6.5-650-201704001 | |
VMware ESXi | =6.5-650-201707101 | |
VMware ESXi | =6.5-650-201707102 | |
VMware ESXi | =6.5-650-201707103 | |
VMware ESXi | =6.5-650-201707201 | |
VMware ESXi | =6.5-650-201707202 | |
VMware ESXi | =6.5-650-201707203 | |
VMware ESXi | =6.5-650-201707204 | |
VMware ESXi | =6.5-650-201707205 | |
VMware ESXi | =6.5-650-201707206 | |
VMware ESXi | =6.5-650-201707207 | |
VMware ESXi | =6.5-650-201707208 | |
VMware ESXi | =6.5-650-201707209 | |
VMware ESXi | =6.5-650-201707210 | |
VMware ESXi | =6.5-650-201707211 | |
VMware ESXi | =6.5-650-201707212 | |
VMware ESXi | =6.5-650-201707213 | |
VMware ESXi | =6.5-650-201707214 | |
VMware ESXi | =6.5-650-201707215 | |
VMware ESXi | =6.5-650-201707216 | |
VMware ESXi | =6.5-650-201707217 | |
VMware ESXi | =6.5-650-201707218 | |
VMware ESXi | =6.5-650-201707219 | |
VMware ESXi | =6.5-650-201707220 | |
VMware ESXi | =6.5-650-201707221 | |
VMware ESXi | =6.5-650-201710001 | |
VMware ESXi | =6.5-650-201712001 | |
VMware ESXi | =6.5-650-201803001 | |
VMware ESXi | =6.5-650-201806001 | |
VMware ESXi | =6.5-650-201808001 | |
VMware ESXi | =6.5-650-201810001 | |
VMware ESXi | =6.5-650-201810002 | |
VMware ESXi | =6.5-650-201811001 | |
VMware ESXi | =6.5-650-201811002 | |
VMware ESXi | =6.5-650-201811301 | |
VMware ESXi | =6.5-650-201901001 | |
VMware ESXi | =6.5-650-201903001 | |
VMware ESXi | =6.5-650-201905001 | |
VMware ESXi | =6.5-650-201908001 | |
VMware ESXi | =6.5-650-201910001 | |
VMware ESXi | =6.5-650-20191004001 | |
VMware ESXi | =6.5-650-201911001 | |
VMware ESXi | =6.5-650-201911401 | |
VMware ESXi | =6.5-650-201911402 | |
VMware ESXi | =6.5-650-201912001 | |
VMware ESXi | =6.5-650-201912002 | |
VMware ESXi | =6.5-650-201912101 | |
VMware ESXi | =6.5-650-201912102 | |
VMware ESXi | =6.5-650-201912103 | |
VMware ESXi | =6.5-650-201912104 | |
VMware ESXi | =6.5-650-201912301 | |
VMware ESXi | =6.5-650-201912401 | |
VMware ESXi | =6.5-650-201912402 | |
VMware ESXi | =6.5-650-201912403 | |
VMware ESXi | =6.5-650-201912404 | |
VMware ESXi | =6.5-650-202005001 | |
VMware ESXi | =6.5-650-202006001 | |
VMware ESXi | =6.5-650-202007001 | |
VMware ESXi | =6.5-650-202010001 | |
VMware ESXi | =6.7 | |
VMware ESXi | =6.7-670-201806001 | |
VMware ESXi | =6.7-670-201807001 | |
VMware ESXi | =6.7-670-201808001 | |
VMware ESXi | =6.7-670-201810001 | |
VMware ESXi | =6.7-670-201810101 | |
VMware ESXi | =6.7-670-201810102 | |
VMware ESXi | =6.7-670-201810103 | |
VMware ESXi | =6.7-670-201810201 | |
VMware ESXi | =6.7-670-201810202 | |
VMware ESXi | =6.7-670-201810203 | |
VMware ESXi | =6.7-670-201810204 | |
VMware ESXi | =6.7-670-201810205 | |
VMware ESXi | =6.7-670-201810206 | |
VMware ESXi | =6.7-670-201810207 | |
VMware ESXi | =6.7-670-201810208 | |
VMware ESXi | =6.7-670-201810209 | |
VMware ESXi | =6.7-670-201810210 | |
VMware ESXi | =6.7-670-201810211 | |
VMware ESXi | =6.7-670-201810212 | |
VMware ESXi | =6.7-670-201810213 | |
VMware ESXi | =6.7-670-201810214 | |
VMware ESXi | =6.7-670-201810215 | |
VMware ESXi | =6.7-670-201810216 | |
VMware ESXi | =6.7-670-201810217 | |
VMware ESXi | =6.7-670-201810218 | |
VMware ESXi | =6.7-670-201810219 | |
VMware ESXi | =6.7-670-201810220 | |
VMware ESXi | =6.7-670-201810221 | |
VMware ESXi | =6.7-670-201810222 | |
VMware ESXi | =6.7-670-201810223 | |
VMware ESXi | =6.7-670-201810224 | |
VMware ESXi | =6.7-670-201810225 | |
VMware ESXi | =6.7-670-201810226 | |
VMware ESXi | =6.7-670-201810227 | |
VMware ESXi | =6.7-670-201810228 | |
VMware ESXi | =6.7-670-201810229 | |
VMware ESXi | =6.7-670-201810230 | |
VMware ESXi | =6.7-670-201810231 | |
VMware ESXi | =6.7-670-201810232 | |
VMware ESXi | =6.7-670-201810233 | |
VMware ESXi | =6.7-670-201810234 | |
VMware ESXi | =6.7-670-201811001 | |
VMware ESXi | =6.7-670-201901001 | |
VMware ESXi | =6.7-670-201901401 | |
VMware ESXi | =6.7-670-201901402 | |
VMware ESXi | =6.7-670-201901403 | |
VMware ESXi | =6.7-670-201903001 | |
VMware ESXi | =6.7-670-201904001 | |
VMware ESXi | =6.7-670-201904201 | |
VMware ESXi | =6.7-670-201904201-ug | |
VMware ESXi | =6.7-670-201904202 | |
VMware ESXi | =6.7-670-201904202-ug | |
VMware ESXi | =6.7-670-201904203 | |
VMware ESXi | =6.7-670-201904203-ug | |
VMware ESXi | =6.7-670-201904204 | |
VMware ESXi | =6.7-670-201904204-ug | |
VMware ESXi | =6.7-670-201904205 | |
VMware ESXi | =6.7-670-201904205-ug | |
VMware ESXi | =6.7-670-201904206 | |
VMware ESXi | =6.7-670-201904206-ug | |
VMware ESXi | =6.7-670-201904207 | |
VMware ESXi | =6.7-670-201904207-ug | |
VMware ESXi | =6.7-670-201904208 | |
VMware ESXi | =6.7-670-201904208-ug | |
VMware ESXi | =6.7-670-201904209 | |
VMware ESXi | =6.7-670-201904209-ug | |
VMware ESXi | =6.7-670-201904210 | |
VMware ESXi | =6.7-670-201904210-ug | |
VMware ESXi | =6.7-670-201904211 | |
VMware ESXi | =6.7-670-201904211-ug | |
VMware ESXi | =6.7-670-201904212 | |
VMware ESXi | =6.7-670-201904212-ug | |
VMware ESXi | =6.7-670-201904213 | |
VMware ESXi | =6.7-670-201904213-ug | |
VMware ESXi | =6.7-670-201904214 | |
VMware ESXi | =6.7-670-201904214-ug | |
VMware ESXi | =6.7-670-201904215 | |
VMware ESXi | =6.7-670-201904215-ug | |
VMware ESXi | =6.7-670-201904216 | |
VMware ESXi | =6.7-670-201904216-ug | |
VMware ESXi | =6.7-670-201904217 | |
VMware ESXi | =6.7-670-201904217-ug | |
VMware ESXi | =6.7-670-201904218 | |
VMware ESXi | =6.7-670-201904218-ug | |
VMware ESXi | =6.7-670-201904219 | |
VMware ESXi | =6.7-670-201904219-ug | |
VMware ESXi | =6.7-670-201904220 | |
VMware ESXi | =6.7-670-201904220-ug | |
VMware ESXi | =6.7-670-201904221 | |
VMware ESXi | =6.7-670-201904221-ug | |
VMware ESXi | =6.7-670-201904222 | |
VMware ESXi | =6.7-670-201904222-ug | |
VMware ESXi | =6.7-670-201904223 | |
VMware ESXi | =6.7-670-201904223-ug | |
VMware ESXi | =6.7-670-201904224 | |
VMware ESXi | =6.7-670-201904224-ug | |
VMware ESXi | =6.7-670-201904225 | |
VMware ESXi | =6.7-670-201904225-ug | |
VMware ESXi | =6.7-670-201904226 | |
VMware ESXi | =6.7-670-201904226-ug | |
VMware ESXi | =6.7-670-201904227 | |
VMware ESXi | =6.7-670-201904227-ug | |
VMware ESXi | =6.7-670-201904228 | |
VMware ESXi | =6.7-670-201904228-ug | |
VMware ESXi | =6.7-670-201904229 | |
VMware ESXi | =6.7-670-201904229-ug | |
VMware ESXi | =6.7-670-201905001 | |
VMware ESXi | =6.7-670-201906002 | |
VMware ESXi | =6.7-670-201908101 | |
VMware ESXi | =6.7-670-201908102 | |
VMware ESXi | =6.7-670-201908103 | |
VMware ESXi | =6.7-670-201908104 | |
VMware ESXi | =6.7-670-201908201 | |
VMware ESXi | =6.7-670-201908202 | |
VMware ESXi | =6.7-670-201908203 | |
VMware ESXi | =6.7-670-201908204 | |
VMware ESXi | =6.7-670-201908205 | |
VMware ESXi | =6.7-670-201908206 | |
VMware ESXi | =6.7-670-201908207 | |
VMware ESXi | =6.7-670-201908208 | |
VMware ESXi | =6.7-670-201908209 | |
VMware ESXi | =6.7-670-201908210 | |
VMware ESXi | =6.7-670-201908211 | |
VMware ESXi | =6.7-670-201908212 | |
VMware ESXi | =6.7-670-201908213 | |
VMware ESXi | =6.7-670-201908214 | |
VMware ESXi | =6.7-670-201908215 | |
VMware ESXi | =6.7-670-201908216 | |
VMware ESXi | =6.7-670-201908217 | |
VMware ESXi | =6.7-670-201908218 | |
VMware ESXi | =6.7-670-201908219 | |
VMware ESXi | =6.7-670-201908220 | |
VMware ESXi | =6.7-670-201908221 | |
VMware ESXi | =6.7-670-201912001 | |
VMware ESXi | =6.7-670-201912101 | |
VMware ESXi | =6.7-670-201912102 | |
VMware ESXi | =6.7-670-201912401 | |
VMware ESXi | =6.7-670-201912402 | |
VMware ESXi | =6.7-670-201912403 | |
VMware ESXi | =6.7-670-201912404 | |
VMware ESXi | =6.7-670-201912405 | |
VMware ESXi | =6.7-670-202004001 | |
VMware ESXi | =6.7-670-202004002 | |
VMware ESXi | =6.7-670-202004301 | |
VMware ESXi | =6.7-670-202004401 | |
VMware ESXi | =6.7-670-202004402 | |
VMware ESXi | =6.7-670-202004403 | |
VMware ESXi | =6.7-670-202004404 | |
VMware ESXi | =6.7-670-202004405 | |
VMware ESXi | =6.7-670-202004406 | |
VMware ESXi | =6.7-670-202004407 | |
VMware ESXi | =6.7-670-202004408 | |
VMware ESXi | =6.7-670-202006001 | |
VMware ESXi | =6.7-670-202008001 | |
VMware ESXi | =6.7-670-202010001 | |
VMware ESXi | =7.0.0 | |
VMware ESXi | =7.0.0-1.20.16321839 | |
VMware ESXi | ||
>=3.0<3.10.1.1 | ||
>=4.0<4.1 | ||
=6.5 | ||
=6.5-2 | ||
=6.5-650-201701001 | ||
=6.5-650-201703001 | ||
=6.5-650-201703002 | ||
=6.5-650-201704001 | ||
=6.5-650-201707101 | ||
=6.5-650-201707102 | ||
=6.5-650-201707103 | ||
=6.5-650-201707201 | ||
=6.5-650-201707202 | ||
=6.5-650-201707203 | ||
=6.5-650-201707204 | ||
=6.5-650-201707205 | ||
=6.5-650-201707206 | ||
=6.5-650-201707207 | ||
=6.5-650-201707208 | ||
=6.5-650-201707209 | ||
=6.5-650-201707210 | ||
=6.5-650-201707211 | ||
=6.5-650-201707212 | ||
=6.5-650-201707213 | ||
=6.5-650-201707214 | ||
=6.5-650-201707215 | ||
=6.5-650-201707216 | ||
=6.5-650-201707217 | ||
=6.5-650-201707218 | ||
=6.5-650-201707219 | ||
=6.5-650-201707220 | ||
=6.5-650-201707221 | ||
=6.5-650-201710001 | ||
=6.5-650-201712001 | ||
=6.5-650-201803001 | ||
=6.5-650-201806001 | ||
=6.5-650-201808001 | ||
=6.5-650-201810001 | ||
=6.5-650-201810002 | ||
=6.5-650-201811001 | ||
=6.5-650-201811002 | ||
=6.5-650-201811301 | ||
=6.5-650-201901001 | ||
=6.5-650-201903001 | ||
=6.5-650-201905001 | ||
=6.5-650-201908001 | ||
=6.5-650-201910001 | ||
=6.5-650-20191004001 | ||
=6.5-650-201911001 | ||
=6.5-650-201911401 | ||
=6.5-650-201911402 | ||
=6.5-650-201912001 | ||
=6.5-650-201912002 | ||
=6.5-650-201912101 | ||
=6.5-650-201912102 | ||
=6.5-650-201912103 | ||
=6.5-650-201912104 | ||
=6.5-650-201912301 | ||
=6.5-650-201912401 | ||
=6.5-650-201912402 | ||
=6.5-650-201912403 | ||
=6.5-650-201912404 | ||
=6.5-650-202005001 | ||
=6.5-650-202006001 | ||
=6.5-650-202007001 | ||
=6.5-650-202010001 | ||
=6.7 | ||
=6.7-670-201806001 | ||
=6.7-670-201807001 | ||
=6.7-670-201808001 | ||
=6.7-670-201810001 | ||
=6.7-670-201810101 | ||
=6.7-670-201810102 | ||
=6.7-670-201810103 | ||
=6.7-670-201810201 | ||
=6.7-670-201810202 | ||
=6.7-670-201810203 | ||
=6.7-670-201810204 | ||
=6.7-670-201810205 | ||
=6.7-670-201810206 | ||
=6.7-670-201810207 | ||
=6.7-670-201810208 | ||
=6.7-670-201810209 | ||
=6.7-670-201810210 | ||
=6.7-670-201810211 | ||
=6.7-670-201810212 | ||
=6.7-670-201810213 | ||
=6.7-670-201810214 | ||
=6.7-670-201810215 | ||
=6.7-670-201810216 | ||
=6.7-670-201810217 | ||
=6.7-670-201810218 | ||
=6.7-670-201810219 | ||
=6.7-670-201810220 | ||
=6.7-670-201810221 | ||
=6.7-670-201810222 | ||
=6.7-670-201810223 | ||
=6.7-670-201810224 | ||
=6.7-670-201810225 | ||
=6.7-670-201810226 | ||
=6.7-670-201810227 | ||
=6.7-670-201810228 | ||
=6.7-670-201810229 | ||
=6.7-670-201810230 | ||
=6.7-670-201810231 | ||
=6.7-670-201810232 | ||
=6.7-670-201810233 | ||
=6.7-670-201810234 | ||
=6.7-670-201811001 | ||
=6.7-670-201901001 | ||
=6.7-670-201901401 | ||
=6.7-670-201901402 | ||
=6.7-670-201901403 | ||
=6.7-670-201903001 | ||
=6.7-670-201904001 | ||
=6.7-670-201904201 | ||
=6.7-670-201904201-ug | ||
=6.7-670-201904202 | ||
=6.7-670-201904202-ug | ||
=6.7-670-201904203 | ||
=6.7-670-201904203-ug | ||
=6.7-670-201904204 | ||
=6.7-670-201904204-ug | ||
=6.7-670-201904205 | ||
=6.7-670-201904205-ug | ||
=6.7-670-201904206 | ||
=6.7-670-201904206-ug | ||
=6.7-670-201904207 | ||
=6.7-670-201904207-ug | ||
=6.7-670-201904208 | ||
=6.7-670-201904208-ug | ||
=6.7-670-201904209 | ||
=6.7-670-201904209-ug | ||
=6.7-670-201904210 | ||
=6.7-670-201904210-ug | ||
=6.7-670-201904211 | ||
=6.7-670-201904211-ug | ||
=6.7-670-201904212 | ||
=6.7-670-201904212-ug | ||
=6.7-670-201904213 | ||
=6.7-670-201904213-ug | ||
=6.7-670-201904214 | ||
=6.7-670-201904214-ug | ||
=6.7-670-201904215 | ||
=6.7-670-201904215-ug | ||
=6.7-670-201904216 | ||
=6.7-670-201904216-ug | ||
=6.7-670-201904217 | ||
=6.7-670-201904217-ug | ||
=6.7-670-201904218 | ||
=6.7-670-201904218-ug | ||
=6.7-670-201904219 | ||
=6.7-670-201904219-ug | ||
=6.7-670-201904220 | ||
=6.7-670-201904220-ug | ||
=6.7-670-201904221 | ||
=6.7-670-201904221-ug | ||
=6.7-670-201904222 | ||
=6.7-670-201904222-ug | ||
=6.7-670-201904223 | ||
=6.7-670-201904223-ug | ||
=6.7-670-201904224 | ||
=6.7-670-201904224-ug | ||
=6.7-670-201904225 | ||
=6.7-670-201904225-ug | ||
=6.7-670-201904226 | ||
=6.7-670-201904226-ug | ||
=6.7-670-201904227 | ||
=6.7-670-201904227-ug | ||
=6.7-670-201904228 | ||
=6.7-670-201904228-ug | ||
=6.7-670-201904229 | ||
=6.7-670-201904229-ug | ||
=6.7-670-201905001 | ||
=6.7-670-201906002 | ||
=6.7-670-201908101 | ||
=6.7-670-201908102 | ||
=6.7-670-201908103 | ||
=6.7-670-201908104 | ||
=6.7-670-201908201 | ||
=6.7-670-201908202 | ||
=6.7-670-201908203 | ||
=6.7-670-201908204 | ||
=6.7-670-201908205 | ||
=6.7-670-201908206 | ||
=6.7-670-201908207 | ||
=6.7-670-201908208 | ||
=6.7-670-201908209 | ||
=6.7-670-201908210 | ||
=6.7-670-201908211 | ||
=6.7-670-201908212 | ||
=6.7-670-201908213 | ||
=6.7-670-201908214 | ||
=6.7-670-201908215 | ||
=6.7-670-201908216 | ||
=6.7-670-201908217 | ||
=6.7-670-201908218 | ||
=6.7-670-201908219 | ||
=6.7-670-201908220 | ||
=6.7-670-201908221 | ||
=6.7-670-201912001 | ||
=6.7-670-201912101 | ||
=6.7-670-201912102 | ||
=6.7-670-201912401 | ||
=6.7-670-201912402 | ||
=6.7-670-201912403 | ||
=6.7-670-201912404 | ||
=6.7-670-201912405 | ||
=6.7-670-202004001 | ||
=6.7-670-202004002 | ||
=6.7-670-202004301 | ||
=6.7-670-202004401 | ||
=6.7-670-202004402 | ||
=6.7-670-202004403 | ||
=6.7-670-202004404 | ||
=6.7-670-202004405 | ||
=6.7-670-202004406 | ||
=6.7-670-202004407 | ||
=6.7-670-202004408 | ||
=6.7-670-202006001 | ||
=6.7-670-202008001 | ||
=6.7-670-202010001 | ||
=7.0.0 | ||
=7.0.0-1.20.16321839 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-3992 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2020-3992, update your VMware ESXi to the latest version that patches this vulnerability.
An attacker with access to the management network and port 427 can exploit CVE-2020-3992.
CVE-2020-3992 allows an attacker to perform remote code execution, potentially leading to complete system compromise.
VMware ESXi versions 6.5, 6.7, and 7.0 prior to their respective patch releases are affected by CVE-2020-3992.