LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

CVE-2024-37079: Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability

RBRecent Breaches Vulnerability Intelligence·Jan 23, 2026
High⚠ Actively exploited (CISA KEV)
High
Severity
Active
CISA KEV
No
Ransomware use
Feb 13, 2026
Patch deadline
⚠ Exploited in the wild. CISA added CVE-2024-37079 to its Known Exploited Vulnerabilities catalog on Jan 23, 2026, with a federal patch deadline of Feb 13, 2026 — meaning attackers are actively using it. If you run the affected software, patch it immediately.

Broadcom VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. This could allow a malicious actor with network access to vCenter Server to…

Broadcom VMware vCenter Server contains an out-of-bounds write vulnerability in its DCERPC protocol implementation. An attacker with network access can send specially crafted packets that may result in remote code execution on the server.

This matters because vCenter Server manages virtual infrastructure; successful exploitation can give an attacker control over the management plane without requiring prior credentials.

How it works

The weakness is classified as CWE-787, an out-of-bounds write. In this class of flaw, a program writes data beyond the allocated boundaries of a buffer, which can corrupt adjacent memory and allow arbitrary code execution.

Am I affected? How to find it in your systems

Inventory all deployments of Broadcom VMware vCenter Server in your environment. Confirm the exact versions and configurations running in production, test, and disaster-recovery sites.

How to remediate

Apply the vendor-supplied update referenced in the official advisory. This is the primary and most effective control.

If you can't patch immediately

Until the update can be deployed, reduce exposure through network controls and monitoring.

If your data may have been exposed

Actively exploited vulnerabilities of this type can lead to unauthorized access and data exposure. Organizations can run a free exposure scan of their email domains against known breach data to check for prior incidents involving their accounts.

AICompiled with AI assistance from public sources and published under our editorial standards.

Details

AffectedBroadcom · VMware vCenter Server
WeaknessCWE-787
Added to CISA KEVJan 23, 2026
Federal patch deadlineFeb 13, 2026
Known ransomware useNot documented
Check if your data is exposed →

Official records: NVD · CISA KEV

← All actively-exploited vulnerabilities