VMware Cloud Community
baber
Expert
Expert

vulnerable update for esxi 6.7 U2

Dear friend

Hi

i have installed latest version of esxi 6.7 u2  (VMware ESXi 6.7.0 build-13006603)

now after login show this message :

  This host is potentially vulnerable to issues described in CVE-2018-3646, please refer to https://kb.vmware.com/s/article/55636 for details and VMware recommendations.         

i was read that but could not find any file for download

Is there any file for install on esxi ?

BR

Babak

Please mark helpful or correct if my answer resolved your issue.
0 Kudos
3 Replies
jburen
Expert
Expert

In the article that you've read is a link to another article: VMware Knowledge Base​ It gives detailed info about the issue and also links to updates.

Consider giving Kudos if you think my response helped you in any way.
0 Kudos
baber
Expert
Expert

As i am using VMware ESXi 6.7.0 build-13006603

had to do these steps ?

Enabling the ESXi Side-Channel-Aware Scheduler Version 2 (SCAv2) using the vSphere Web Client or vSphere Client

  1. Connect to the vCenter Server using either the vSphere Web or vSphere Client.
  2. Select an ESXi host in the inventory.
  3. Click the Configure tab.
  4. Under the System heading, click Advanced System Settings.
  5. Click Edit
  6. Click in the Filter box and search VMkernel.Boot.hyperthreadingMitigation
  7. Select the setting by name
  8. Change the configuration option to true (default: false).
  9. Click in the Filter box and search VMkernel.Boot.hyperthreadingMitigationIntraVM
  10. Change the configuration option to false (default: true).
  11. Click OK.
  12. Reboot the ESXi host for the configuration change to go into effect.

BR

Babak

Please mark helpful or correct if my answer resolved your issue.
0 Kudos
jburen
Expert
Expert

Well, you're not forced to make these change. But you can. You would have to make a descision as to whether you're willing to take a slight performance hit. Carefully read the article...

Consider giving Kudos if you think my response helped you in any way.
0 Kudos