Organizations using the VMware vRealize Log Analysis tool are being urged to update it in order to patch several recently discovered security bugs. According to a security advisory issued by VMware yesterday, the company has identified a critical security bug and a medium severity bug in the product.
The security bug is described as a critical uncontrolled search path element in the VMware vRealize Log Insight Agent. The critical severity bug can be exploited by malicious users to create a malicious search path element, which could be used to execute arbitrary code. The second bug is a medium severity uncontrolled search path element in the VMware vRealize Log Insight EventEndpointService. The bug can be used by malicious users to gain unauthorized access and escalate privileges.
Both flaws have been assigned the identifier CVE-2021-21986 and were reported to VMware by researchers from Trend Micro’s Zero Day Initiative. According to the security advisory, the company has released updates for the Log Insight Agent and Cloud Services for VMware vRealize Log Insight, which remove the security bug.
Organizations using the VMware vRealize Log Analysis tool that haven't yet done so should install the patch released by the company as soon as possible in order to remove the security bug. The patch is available in VMware's online repository and should be applied to all instances of vRealize Log Analysis. The patch will ensure that malicious users cannot access the systems or escalate their privileges. It will also prevent the execution of any malicious code on the system.
In addition to patching the security bug, organizations should also take other steps to secure their systems. This includes using the latest version of the vRealize Log Analysis tool, regularly running security scans to identify any potential security vulnerabilities, and ensuring that all users are using secure authentication methods. Organizations should also create a log analysis alert system that can detect any suspicious activity on the systems. By taking these steps, organizations can ensure that their systems are secure and any security bugs are quickly identified and addressed.
This Cyber News was published on www.bleepingcomputer.com. Publication date: Tue, 24 Jan 2023 22:02:02 +0000