TL;DR

CVE-2024-37079, a Broadcom VMware vCenter Server out-of-bounds write vulnerability, has been added to CISA's Known Exploited Vulnerabilities (KEV) Catalog due to active exploitation. Federal agencies are required to address this risk promptly.

What happened

['CVE-2024-37079 was identified and added to the KEV Catalog by CISA']

Why it matters for ops

['This vulnerability poses a significant risk for exploitation, impacting federal security']

Mitigation

  • Apply patches and updates to address CVE-2024-37079
  • Implement network segmentation to limit exposure

Action items

  • Review system configurations and update as necessary
  • Check for the presence of this vulnerability in internal systems

Detection IOCs

  • Search logs for signs of out-of-bounds write attempts targeting vCenter Server

Source link

https://www.cisa.gov/news-events/alerts/2026/01/23/cisa-adds-one-known-exploited-vulnerability-catalog