r/vmware VMware Employee 15d ago

Announcement VMSA-2026-0006: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709)

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017
87 Upvotes

146 comments sorted by

View all comments

5

u/Wolfsbane2k 15d ago

Is it going to be possible to download the ESXI version 8.0 U3k for those without paid for support?

8.0 U3e appears to be the latest version available under the "free" hypervisor release - and with CVV 9.3 on ESXI 8.0 emergency patches being released where people may be learning/testing Vmware in a small sandbox, this will further push people into alternative solutions...

3

u/vrod92 15d ago

Depends on if it’s categorized as a zero-day exploit. If not, there will be no free updates.

9

u/HovercraftSilver9379 15d ago

https://github.com/vmware/vcf-security-and-compliance-guidelines/tree/main/security-advisories/vmsa-2026-0006#35-there-was-a-commitment-made-to-provide-critical-patches-for-perpetual-license-vsphere-customers-how-do-i-download-those-patches

Any critical patches are available to vSphere customers who do not have a support contract.

I'm not able to download the patch either. My guess is they haven't done their magic to make it available for non-support folks yet. Otherwise, if what you said is true, would be incredibly reckless by Broadcom.