Date Author Title

VMWARE PATCHES

2012-01-31Russ McReeFirefox 10 and VMWare advisories and updates
2009-11-21Mark HofmanVMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html

VMWARE

2023-10-20/a>Yee Ching TokVMware Releases Security Patches for Fusion, Workstation and Aria Operations for Logs
2023-05-14/a>Guy BruneauVMware Aria Operations addresses multiple Local Privilege Escalations and a Deserialization issue
2023-03-18/a>Xavier MertensOld Backdoor, New Obfuscation
2023-02-03/a>Jim ClausingVMware workstation 17.0.1 fixes arbitrary file deletion issue - https://www.vmware.com/security/advisories/VMSA-2023-0003.html
2021-11-04/a>Tom WebbXmount for Disk Images
2020-08-22/a>Guy BruneauVMware App Volumes patches address Stored Cross-Site Scripting (XSS) vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0019.html
2020-07-11/a>Guy BruneauVMware XPC Client validation privilege escalation vulnerability - https://www.vmware.com/security/advisories/VMSA-2020-0017.html
2020-06-15/a>Rick WannerVMWare Security Advisory - VMSA-2020-0013 - https://www.vmware.com/security/advisories/VMSA-2020-0013.html
2020-05-19/a>Rick WannerVMWare Security Advisory - VMSA-2020-0010 - https://www.vmware.com/security/advisories/VMSA-2020-0010.html
2020-05-09/a>Rick WannerVMWare vRealize Critical vulnerabilities due to SaltStack - VMSA-2020-0009
2020-04-10/a>Scott FendleyCritical Vuln in vCenter vmdir (CVE-2020-3952)
2018-11-20/a>Xavier MertensVMware Affected by Dell EMC Avamar Vulnerability
2018-10-17/a>Russ McReeVMSA-2018-0026 VMware ESXi, Workstation & Fusion updates address out-of-bounds read vulnerability https://www.vmware.com/security/advisories/VMSA-2018-0026.html
2018-05-22/a>Xavier MertensVMware Workstation and Fusion updates address signature bypass and multiple denial-of-service vulnerabilities https://www.vmware.com/security/advisories/VMSA-2018-0013.html
2017-12-20/a>Richard PorterVMWare Security Advisory: VMSA-2017-0021: https://www.vmware.com/security/advisories/VMSA-2017-0021.html
2017-09-16/a>Guy BruneauVMware ESXi, vCenter Server, Fusion and Workstation updates resolve multiple security vulnerabilities - https://www.vmware.com/security/advisories/VMSA-2017-0015.html
2017-03-29/a>Xavier MertensCritical VMware vulnerabilities disclosed
2017-01-31/a>Johannes UllrichVMWare Security Advisory for AirWatch http://www.vmware.com/security/advisories/VMSA-2017-0001.html
2016-11-23/a>Tom WebbVmware Patches VMSA-2016-0005.5, VMSA-2016-0018.3 and VMSA-2016-0021
2016-10-26/a>Johannes UllrichNew VMWare Security Advisory: VMSA-2016-0017 Information Disclosure in VMWare Fusion and VMWare Tools https://www.vmware.com/security/advisories/VMSA-2016-0017.html
2016-05-25/a>Rick WannerVMWare Security Advisories
2016-02-23/a>Xavier MertensVMware VMSA-2016-0002
2016-02-13/a>Guy BruneauVMware VMSA-2015-0007.3 has been Re-released
2016-01-10/a>Jim ClausingVMware security update
2015-12-19/a>Russell EubanksVMWare Security Advisory
2015-04-04/a>Didier StevensVMware Product Updates Address Critical Information Disclosure Issue In JRE
2014-12-05/a>Basil Alawi S.TaherVMware new and updated security advisories
2014-10-23/a>Russ McReeDigest: 23 OCT 2014
2014-10-01/a>Russ McReeVMware security advisory: VMSA-2014-0010 http://www.vmware.com/security/advisories/VMSA-2014-0010.html
2014-09-12/a>Chris MohanVMware NSX and vCNS product updates address a critical information disclosure vulnerability http://www.vmware.com/security/advisories/VMSA-2014-0009.html
2014-08-14/a>Basil Alawi S.TaherThreats to virtual environments
2014-08-05/a>Johannes UllrichCenter for Internet Security Releases Benchmark for VMWare ESXi 5.5 https://benchmarks.cisecurity.org/downloads/form/index.cfm?download=esxi55.100
2014-04-15/a>Richard PorterVMWare Advisory VMSA-2014-0004 - Updates on OpenSSL HeartBleed http://www.vmware.com/security/advisories/VMSA-2014-0004.html
2014-04-11/a>Rob VandenBrinkVMware Security Advisories / Patches released for 2 issues (NOT Heartbleed) - http://www.vmware.com/security/advisories/VMSA-2014-0003.html and http://www.vmware.com/security/advisories/VMSA-2014-0002.html
2014-01-17/a>Russ McReeNew and updated VMWare security advisories - http://www.vmware.com/security/advisories
2013-12-23/a>Scott FendleyVMWare ESX/ESXi Security Advisory
2013-12-04/a>Adrien de BeaupreVMware Security Advisory VMSA-2013-0014
2013-11-15/a>Johannes UllrichVMWare Security Advisory: http://www.vmware.com/security/advisories/VMSA-2013-0013.html
2013-08-30/a>Kevin ListonVMware ESXi and ESX address an NFC Protocol Unhandled Exception
2013-08-02/a>Chris MohanVMware Security Advisory VMSA-2013-0009 - http://www.vmware.com/security/advisories/VMSA-2013-0009.html
2013-06-11/a>Swa Frantzenvmware security advisory VMSA-2013-0008
2013-05-31/a>Chris MohanVMware releases new and updated security advisories
2013-02-22/a>Chris MohanVMware releases new and updated security advisories
2013-02-08/a>Johannes UllrichVMWare Advisories (ESX, Workstation, Fusion...) http://www.vmware.com/security/advisories/VMSA-2013-0002.html
2013-02-01/a>Jim ClausingVMware vSphere security updates for the authentication service and third party libraries (see http://www.vmware.com/security/advisories/VMSA-2013-0001.html)
2012-11-16/a>Guy BruneauVMware security updates for vSphere API and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2012-0016.html
2012-10-05/a>Richard PorterVMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html
2012-08-31/a>Johannes UllrichVMware Updates
2012-07-13/a>Russ McReeVMWare Security Advisory 12 JUL 2012
2012-06-14/a>Johannes UllrichVMWare Security Advisories
2012-06-04/a>Rob VandenBrinkvSphere 5.0 Hardening Guide Officially Released
2012-05-25/a>Guy BruneauVMware vMA Security Advisory VMSA-2012-0010 - http://www.vmware.com/security/advisories/VMSA-2012-0010.html
2012-05-03/a>Guy BruneauVMware Critical Security Issues Advisory - http://www.vmware.com/security/advisories/VMSA-2012-0009.html
2012-05-02/a>Bojan ZdrnjaMonitoring VMWare logs
2012-04-13/a>Daniel WesemannVMware ESX/ESXi privilege escalation vuln. advisory: http://www.vmware.com/security/advisories/VMSA-2012-0007.html
2012-03-16/a>Guy BruneauVMware New and Updated Security Advisories
2012-03-09/a>Guy BruneauVMware New and Updated Advisories
2012-01-31/a>Russ McReeFirefox 10 and VMWare advisories and updates
2011-11-18/a>Kevin ListonRecent VMWare security advisories
2011-10-13/a>Kevin ShorttVMware ESXi and ESX updates to third party libraries and ESX Service Console - http://www.vmware.com/security/advisories/VMSA-2011-0012.html
2011-10-05/a>Jim ClausingVMware Advisory - UDF file system handling
2011-08-17/a>Rob VandenBrinkPutting all of Your Eggs in One Basket - or How NOT to do Layoffs
2011-04-28/a>Guy BruneauVMware ESXi 4.1 Security and Firmware Updates
2011-03-08/a>Jim ClausingVMware ESX/ESXi security updates released, see http://www.vmware.com/security/advisories/VMSA-2011-0004.html
2011-02-08/a>Chris MohanVMWare Security Advisory
2011-01-05/a>Johannes UllrichVMWare Security Advisory VMSA-2011-0001
2010-07-13/a>Jim ClausingVMware Studio Security Update
2010-05-30/a>Kevin ListonVMware ESX/ESXi Updates
2010-04-09/a>Mark HofmanVMware has released the following patch "VMSA-2010-0007 VMware hosted products, vCenter Server and ESX patches resolve multiple security issues". Make sure you test before applying to production.
2010-04-02/a>Guy BruneauSecurity Advisory for ESX Service Console
2010-03-30/a>Pedro BuenoVMWare Security Advisories Out
2010-02-17/a>Rob VandenBrinkDefining Clouds - " A Cloud by any Other Name Would be a Lot Less Confusing"
2010-02-17/a>Rob VandenBrinkMultiple Security Updates for ESX 3.x and ESXi 3.x
2010-02-10/a>Marcus SachsDatacenters and Directory Traversals
2010-01-30/a>Stephen HallNew and updated VMWare advisories
2010-01-26/a>Rob VandenBrinkVMware vSphere Hardening Guide Draft posted for public review
2009-11-21/a>Mark HofmanVMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html
2009-10-27/a>Rob VandenBrinkNew VMware Desktop Products Released (Workstation, Fusion, ACE)
2009-10-16/a>Stephen HallVMWare updates ESX
2009-10-02/a>Stephen HallVMware Fusion updates to fixes a couple of bugs
2009-08-21/a>Rick WannerUpdates to VMWare Products
2009-07-11/a>Rick WannerVMWare Security Advisories
2009-07-01/a>Bojan ZdrnjaNew VMWare Security Advisory
2009-05-29/a>Lorna HutchesonVMWare Patches Released
2009-04-14/a>Swa FrantzenVMware exploits - just how bad is it ?
2009-04-10/a>Stephen HallPatches for critical VMWare vulnerability
2009-04-04/a>Tony CarothersRecent VMware Updates Available
2009-01-31/a>Swa FrantzenVMware updates
2008-09-19/a>Bojan ZdrnjaVMWare ESX(i) 3.5 security patches
2008-08-12/a>Johannes UllrichVMWare ESX 3.5u2 Errors
2008-06-01/a>Mari NicholsUpdates to VMware resolve critical security issues
2008-03-19/a>Raul SilesVMware updates resolve critical security issues (VMSA-2008-0005)

PATCHES

2024-03-12/a>Johannes UllrichMicrosoft Patch Tuesday - March 2024
2024-03-05/a>Johannes UllrichApple Releases iOS/iPadOS Updates with Zero Day Fixes.
2023-09-26/a>Johannes UllrichApple Releases MacOS Sonoma Including Numerous Security Patches
2023-03-27/a>Johannes UllrichApple Updates Everything (including Studio Display)
2023-02-14/a>Johannes UllrichMicrosoft February 2023 Patch Tuesday
2023-01-24/a>Johannes UllrichApple Updates (almost) Everything: Patch Overview
2022-10-11/a>Johannes UllrichOctober 2022 Microsoft Patch Tuesday
2022-07-20/a>Johannes UllrichApple Patches Everything Day
2022-05-16/a>Johannes UllrichApple Patches Everything
2022-03-31/a>Johannes UllrichApple Patches Actively Exploited Vulnerability in macOS, iOS and iPadOS,
2018-10-09/a>Johannes UllrichOctober 2018 Microsoft Patch Tuesday
2018-09-11/a>Johannes UllrichMicrosoft September Patch Tuesday Summary
2018-07-17/a>Scott FendleyOracle Critical Patch Update Release
2018-06-12/a>Johannes UllrichMicrosoft June 2018 Patch Tuesday
2017-12-12/a>Johannes UllrichDecember Microsoft Patch Tuesday Summary
2017-03-14/a>Johannes UllrichFebruary and March Microsoft Patch Tuesday
2017-01-10/a>Johannes UllrichJanuary 2017 Microsoft Patch Tuesday
2016-02-09/a>Johannes UllrichMicrosoft February 2016 Patch Tuesday
2015-02-11/a>Johannes UllrichMicrosoft Hardens GPO by Fixing Two Serious Vulnerabilities.
2014-10-14/a>Johannes UllrichAdobe October 2014 Bulletins for Flash Player and Coldfusion
2014-07-15/a>Daniel WesemannOracle July 2014 CPU (patch bundle)
2014-07-01/a>Johannes UllrichApple Releases Patches for All Products
2014-04-22/a>Johannes UllrichApple Patches for OS X, iOS and Apple TV.
2014-03-11/a>Johannes UllrichMicrosoft Patch Tuesday March 2014
2014-02-11/a>Johannes UllrichFebruary 2014 Microsoft Patch Tuesday
2014-02-07/a>Johannes UllrichMicrosoft Advance Notification for February 2014
2014-01-14/a>Johannes UllrichMicrosoft Patch Tuesday January 2014
2014-01-09/a>Johannes UllrichMicrosoft Security Bulletin Advance Notification for January 2014 http://technet.microsoft.com/en-us/security/bulletin/ms14-jan
2013-11-12/a>Johannes UllrichNovember 2013 Microsoft Patch Tuesday
2013-11-08/a>Johannes UllrichMicrosoft Patch Tuesday Preview
2013-09-11/a>Johannes UllrichReboot Wednesday: Yesterday's Patch Tuesday Aftermath
2013-09-10/a>Swa FrantzenAdobe September 2013 Black Tuesday Overview
2013-09-10/a>Swa FrantzenMicrosoft September 2013 Black Tuesday Overview
2013-09-10/a>Swa FrantzenMacs need to patch too!
2013-09-07/a>Guy BruneauMicrosoft September Patch Pre-Announcement
2013-08-13/a>Swa FrantzenMicrosoft August 2013 Black Tuesday Overview
2013-07-09/a>Swa FrantzenMicrosoft July 2013 Black Tuesday Overview
2013-07-09/a>Swa FrantzenAdobe July 2013 Black Tuesday Overview
2013-06-11/a>Swa FrantzenMicrosoft June 2013 Black Tuesday Overview
2013-06-11/a>Swa FrantzenAdobe June 2013 Black Tuesday Overview
2013-06-11/a>Swa Frantzenvmware security advisory VMSA-2013-0008
2013-05-14/a>Swa FrantzenMicrosoft May 2013 Black Tuesday Overview
2013-05-14/a>Swa FrantzenFirefox & Thunderbird released
2013-05-14/a>Swa FrantzenAdobe May 2013 Black Tuesday Overview
2013-04-09/a>Swa FrantzenMicrosoft April 2013 Black Tuesday Overview
2013-04-09/a>Swa FrantzenAdobe April 2013 Black Tuesday Overview
2013-03-12/a>Swa FrantzenMicrosoft March 2013 Black Tuesday Overview
2013-03-12/a>Swa FrantzenAdobe March 2013 Black Tueday
2013-02-12/a>Swa FrantzenAdobe Feb 2013 Black Tuesday patches
2013-01-04/a>Daniel WesemannPatch pre-notification from Adobe and Microsoft
2012-07-15/a>Guy BruneauOracle July 2012 Critical Patch Pre-Release Announcement
2012-07-10/a>Swa FrantzenMicrosoft July 2012 Black Tuesday Update - Overview
2012-06-22/a>Kevin ListonUpdated Poll: Which Patch Delivery Schedule Works the Best for You?
2012-06-12/a>Swa FrantzenMicrosoft June 2012 Black Tuesday Update - Overview
2012-06-11/a>Johannes UllrichMicrosoft Update Security
2012-05-08/a>Adam SwangerMicrosoft May 2012 Black Tuesday Update - Overview
2012-04-10/a>Swa FrantzenMicrosoft April 2012 Black Tuesday Update - Overview
2012-04-10/a>Swa FrantzenAdobe April 2012 Black Tuesday Update
2012-03-12/a>Johannes UllrichApple Released Safari 5.1.4
2012-03-08/a>Johannes UllrichApple Patches
2012-03-08/a>Johannes UllrichMicrosoft March Patch Tuesday Pre-Anouncement out. 6 patches, 1 critical: http://technet.microsoft.com/en-us/security/bulletin/ms12-mar
2012-02-16/a>Tony CarothersJava Update for February
2012-01-31/a>Russ McReeFirefox 10 and VMWare advisories and updates
2012-01-18/a>Richard PorterOracle Quarterly Released, http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
2012-01-06/a>Guy BruneauJanuary 2012 Patch Tuesday Pre-release
2011-11-08/a>Swa FrantzenApple Black Tuesday
2011-11-08/a>Swa FrantzenMicrosoft November 2011 Black Tuesday Overview
2011-11-03/a>Guy BruneauNovember 2011 Patch Tuesday Pre-release
2011-10-11/a>Swa FrantzenMicrosoft Black Tuesday Overview October 2011
2011-10-11/a>Swa FrantzenApple iTunes 10.5
2011-09-13/a>Swa FrantzenMicrosoft September 2011 Black Tuesday
2011-09-09/a>Johannes UllrichEarly Patch Tuesday Today: Microsoft September 2011 Patches
2011-09-08/a>Rob VandenBrinkShould We Still Test Patches?
2011-08-09/a>Swa FrantzenMicrosoft August 2011 Black Tuesday Overview
2011-08-09/a>Swa FrantzenAdobe August 2011 Black Tuesday Overview
2011-08-05/a>Johannes UllrichMicrosoft Patch Tuesday Advance Notification: 13 Bulletins coming http://www.microsoft.com/technet/security/Bulletin/MS11-aug.mspx
2011-07-12/a>Swa FrantzenMicrosoft July 2011 Black Tuesday Overview
2011-06-14/a>Swa FrantzenMicrosoft June 2011 Black Tuesday Overview
2011-05-10/a>Swa FrantzenMay 2011 Microsoft Black Tuesday Overview
2011-05-06/a>Richard PorterUpdated Exploit Index for Microsoft
2011-02-04/a>Daniel WesemannBusy patch tuesday ahead
2011-01-18/a>Daniel WesemannOracle Patches (Jan2011 CPU)
2011-01-08/a>Guy BruneauJanuary 2011 Patch Tuesday Pre-release
2010-11-29/a>Stephen HallSun security updates
2010-11-04/a>Johannes UllrichMicrosoft Patches Pre-Announcement
2010-10-12/a>Adrien de BeaupreOctober 2010 Microsoft Black Tuesday Summary
2010-10-08/a>Rick WannerPatch Tuesday Pre-release -- 16 updates
2010-09-14/a>Adrien de BeaupreSeptember 2010 Microsoft Black Tuesday Summary
2010-08-29/a>Swa FrantzenDLL hijacking - what are you doing ?
2010-08-10/a>Jason LamAdobe critical security updates
2010-08-10/a>Jim ClausingAugust 2010 Micrsoft Black Tuesday Summary
2010-08-02/a>Johannes UllrichMicrosoft Out-of-Band bulletin addresses LNK/Shortcut vulnerability
2010-07-13/a>Jim ClausingJuly 2010 Microsoft Black Tuesday Summary
2010-06-08/a>Manuel Humberto Santander PelaezJune 2010 Microsoft Black Tuesday Summary
2010-05-11/a>Scott FendleyMay 2010 Microsoft Patches
2010-04-14/a>Mark HofmanOracle has released 47 critical patches (Includes SUN patches)
2010-02-11/a>Johannes UllrichMS10-015 may cause Windows XP to blue screen
2010-01-12/a>Johannes UllrichOracle Patches Relased
2010-01-12/a>Johannes UllrichMicrosoft Security Bulletin: January 2010
2009-12-09/a>Swa FrantzenAdobe flash player and air patched
2009-12-08/a>Deborah HaleDecember 2009 Black Tuesday Overview
2009-12-03/a>Mark HofmanApple released some Java updates today APPLE-SA-2009-12-03-1 & 2 (for 10.5 and 10.6). Fixes a number of security issues so updating is a good idea.
2009-12-03/a>Mark HofmanNext week will be a big patch week - Adobe is also releasing patches "Adobe is planning to release an update for Adobe Flash Player 10.0.32.18 and earlier versions, and an update to Adobe AIR 1.5.2 and earlier versions, to resolve critical security issues
2009-11-21/a>Mark HofmanVMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html
2009-11-10/a>Swa FrantzenMicrosoft November Black Tuesday Overview
2009-10-13/a>Johannes UllrichMicrosoft October 2009 Black Tuesday Overview
2009-08-11/a>Swa FrantzenMicrosoft August 2009 Black Tuesday Overview
2009-07-30/a>Mark HofmanHappy patching day
2009-07-28/a>Adrien de BeaupreMS released two OOB bulletins and an advisory
2009-07-14/a>Swa FrantzenMicrosoft July Black Tuesday Overview
2009-07-14/a>Swa FrantzenISC DHCP client updated
2009-07-14/a>Swa FrantzenOracle Black Tuesday
2009-06-09/a>Swa FrantzenMicrosoft June Black Tuesday Overview
2009-05-12/a>Swa FrantzenAdobe Acrobat (reader) patches released
2009-05-12/a>Swa FrantzenMay Black Tuesday Overview
2009-05-12/a>Swa FrantzenApple patches and updates
2009-04-14/a>Swa FrantzenApril Black Tuesday Overview
2009-04-14/a>Swa FrantzenOracle quarterly patches
2009-03-18/a>Adrien de BeaupreAdobe Security Bulletin Adobe Reader and Acrobat
2009-03-10/a>Swa FrantzenMarch black Tuesday overview
2009-02-10/a>Swa FrantzenFebruary Black Tuesday Overview
2009-02-06/a>Adrien de BeaupreTime to patch your HP printers
2009-02-06/a>Adrien de BeaupreOther patches and updates du jour...
2009-01-13/a>Johannes UllrichJanuary Black Tuesday Overview
2008-12-09/a>Swa FrantzenDecember Black Tuesday Overview
2008-11-11/a>Swa FrantzenNovember Black Tuesday Overview
2008-10-23/a>Mark HofmanMicrosoft out-of-band patch - Severity Critical
2008-10-21/a>Johannes UllrichWireshark 1.0.4 released
2008-10-14/a>Swa FrantzenOctober Black Tuesday Overview
2008-10-14/a>Swa FrantzenOracle quarterly patches on black tuesday
2008-09-29/a>Daniel WesemannPatchbag: WinZip / MPlayer / RealWin SCADA vuln
2008-09-09/a>Swa FrantzenSeptember 2008 Black Tuesday Overview
2008-09-09/a>Swa FrantzenApple updates iTunes+QuickTime
2008-05-05/a>John BambenekDefenses Against Automated Patch-Based Exploit Generation
2008-04-08/a>Swa FrantzenApril 2008 - Black Tuesday Overview
2006-12-12/a>Swa FrantzenMicrosoft Black Tuesday - December 2006 overview
2006-12-12/a>Swa FrantzenThe missing Microsoft patches
2006-09-12/a>Swa FrantzenMicrosoft security patches for September 2006