Exclusive Some customers of Broadcom’s VMware business currently cannot access security patches, putting them at greater risk of attack. Customers in that perilous position hold perpetual licenses for VMware products but do not have a current support contract with Broadcom, which will not renew those contracts unless users sign up for software subscriptions. Yet many customers in this situation run products that Broadcom continues to support with patches and updates. In April 2024, Broadcom CEO Hock Tan promised “free access to zero-day security patches for supported versions of vSphere” so customers "are able to use perpetual licenses in a safe and secure fashion." VMware patches aren’t freely available; users must log on to Broadcom’s support portal to access the software. Some VMware users in this situation have told The Register that when they enter the portal they cannot download patches, and that VMware support staff have told them it may be 90 days before the software fixes become available. One VMware customer shared the following screenshot: VMware support discussing patch availability with a customer - Click to enlarge A VMware spokesperson confirmed that some customers cannot currently access patches: “Because our support portal requires validation of customer entitlements for software patches, only entitled customers have access to the patches at this time,” the spokesperson explained. That confirms the comment in screenshot above, in which a Broadcom support staf...
VMware prevents some perpetual license holders from downloading patches
The Register
·Simon Sharwood
·Published Jul 23, 2025
·Updated
Affected Software
1 affected component
Broadcom VMware vSphere
Frequently Asked Questions
1
What issue are VMware perpetual license holders facing?
Some VMware perpetual license holders cannot access critical security patches.
2
Which product is specifically affected in this security concern?
The affected product is Broadcom VMware vSphere.
3
What risk do customers face due to this patch access issue?
Customers are put at greater risk of cyber attacks without access to the latest security updates.
4
Is this issue affecting only a specific type of VMware license?
Yes, it primarily affects customers with perpetual licenses.
5
Who owns VMware and is responsible for this patch situation?
VMware is owned by Broadcom, which is responsible for the current patch access problem.