[EN] VMware: How to detect the Log4j vulnerability on vCenter with Runecast, and how to patch it

Опубликовано: 17 Декабрь 2021
на канале: Jorge de la Cruz
3,059
19

Greetings friends, what a couple of great days we have been having, right? First the 0day vulnerability on Grafana, which I recommend you to upgrade to the latest version. And now Apache Log4j. I have been waiting to write about it, as the article would be focused on VMware Center, and I wanted to get to the bottom of it, and as you might be aware, the first fix was not enough, so VMware has announced another extra python Script.

Official KBs to be informed
So, at the moment you can find everything you need on the next two KB:
https://kb.vmware.com/s/article/87081
https://kb.vmware.com/s/article/87088
https://www.vmware.com/security/advis...