SynopsisThe remote VMware ESX / ESXi host is missing a security-related patch.
DescriptionThe remote VMware ESX / ESXi host is missing a security-related patch.
It is, therefore, affected by a denial of service vulnerability in the Network File Copy (NFC) protocol due to improper handling of specially crafted NFC traffic. A man-in-the-middle attacker can exploit this to cause an unhandled exception and application crash, resulting in a denial of service condition.
SolutionApply the appropriate patch according to the vendor advisory that pertains to ESX version 4.0 / 4.1 or ESXi version 4.0 / 4.1.