Broadcom Product Security Update Advisory

Overview

An update has been released to address vulnerabilities in Broadcom Products. Users of the affected versions are advised to update to the latest version.

 

Affected Products

 

CVE-2024-38830, CVE-2024-38831, CVE-2024-38832

  • VMware Aria Operations versions: ~ 8.18.2 (excluded)

 

 

Resolved Vulnerabilities

 

Local Elevation of Privilege Vulnerability in VMware Aria Operations (CVE-2024-38830)

Local Elevation of Privilege Vulnerability in VMware Aria Operations (CVE-2024-38831)

Stored Cross Site Scripting Vulnerability in VMware Aria Operations (CVE-2024-38832)

 

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2024-38830, CVE-2024-38831, CVE-2024-38832

  • VMware Aria Operations version: 8.18.2

 

 

Referenced Sites

[1] CVE-2024-38830 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-38830

[2] CVE-2024-38831 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-38831

[3] CVE-2024-38832 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-38832

[4] VMSA-2024-0022: VMware Aria Operations updates address multiple vulnerabilities(CVE-2024-38830, CVE-2024-38831, CVE-2024-38832, CVE-2024-38833, CVE-2024-38834)

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25199