Producent oprogramowania do wirtualizacji VMware opublikował aktualizację dla produktu vCenter Server o oznaczeniu 6.5 3u. Nowa wersja pozbawiona jest podatności CVE-2022-31680 oraz wprowadza aktualizacje komponentów w celu zwiększenia bezpieczeństwa. Rozwiązano problem z dołączaniem serwera ESXi do domeny Active Directory za pomocą usługi VMware vSphere Authentication Proxy, oraz błędy związane z wyświetlaniem zdarzeń i stanu zdrowia przy pomocy vSAN.
Co nowego?
- vCenter Server 6.5 Update 3u delivers security fixes documented in the Resolved Issues section.
- For Photon OS updates, see VMware vCenter Server Appliance Photon OS Security Patches.
- vCenter Server 6.5 Update 3u provides the following security updates:
- cURL is updated to version 7.84.0.
- The Apache Tomcat server is updated to version 8.5.81.
- The XStream library is updated to version 1.4.19.
- The OpenSSL library is updated to version openssl- 1.0.2zf.
- The Expat XML parser is updated to version 2.4.8.
- The SQLite database is updated to version 3.39.0.
- Jackson is updated to 2.12.7/2.13.2.
- Jackson-databind is updated to 2.12.7/2.13.2.2.
- Eclipse Jetty is updated to 9.4.48.v20220622.
- The Struts2 Core framework is updated to 6.0.0.
- The Oracle (Sun) JRE and JDK package is updated to version 1.8.0.341.
Rozwiązane problemy:
Server Configuration Issues
- Adding ESXi hosts to an Active Directory Domain by using the VMware vSphere Authentication Proxy service might failDue to some additional permission checks from the vSphere Authentication Proxy service, adding an ESXi host to an Active Directory domain might fail. The issue is specific for vSphere Authentication Proxy configurations where some users do not have Domain Admins privileges on the Active Directory.This issue is resolved in this release. The fix reduces the user access checks by the vSphere Authentication Proxy service to only the required minimum.
- You see vSAN health events and alarms even when vSAN is disabledIn rare cases, you might see vSAN health events and alarms even when vSAN is disabled on cluster, but such events do not impact any functionality.This issue is resolved in this release.
- The VMware Service Lifecycle Manager service (vmon) cannot load the proxy config file for Image Builder due to [Errno 13] Permission denied errorIn certain environments, due to incorrect file permissions, the
vmware-rhttpproxy
microservice might fail to load thevmware-imagebuilder
proxy configuration file. In the vmon service logs, you see a message such as:Error in loading endpoint file /etc/vmware-rhttpproxy/endpoints.conf.d/imagebuilder-proxy.conf. Details [Errno 13] Permission denied: '/etc/vmware-rhttpproxy/endpoints.conf.d/imagebuilder-proxy.conf'.
Notatki producenta: VMware vCenter Server 6.5 Update 3u Release Notes
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie