VMware informs of moderately critical vulnerabilities in ESXi 3.x, 4.x and 5.x. Flaws allow to steal sensitive data, launch DoS attacks and access system. Vulnerabilities were found in „updatePosition()“ and „doProlog()“ functions. There are also integer overflows in „audoop_tostereo()“, „audioop_lin2lin()“ and „audioop_ratecv()“ functions in Python.
VMware published patches.
Source: Secunia
01.02.2012