Product Release Advisory - Tanzu Platform for Cloud Foundry isolation segment 10.2.1+LTS-T
35977
24 July 2025
24 July 2025
CLOSED
CRITICAL
9.8
N/A
See CVE list in advisory
Product Release Advisory - Tanzu Platform for Cloud Foundry isolation segment 10.2.1+LTS-T
Advisory Details |
|
Severity |
Critical |
CVSSv3 Range |
9.8 |
CVSSv3 Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Issue Date |
2025-07-24 |
Updated on |
Product Version Release Advisory
- Product Release Tanzu Platform for Cloud Foundry isolation segment 10.2.1+LTS-T
- Product Release Notes: https://techdocs.broadcom.com/us/en/vmware-tanzu/platform/tanzu-platform-for-cloud-foundry/10-2/tpcf/segment-rn.html#10.2.1
Security Fixes This release has the following security fixes, listed by component and area.
Component |
Vulnerabilities Resolved |
tanzu-jammy-stack |
CVE-2024-24790 (Critical) |
tanzu-jammy-stack |
CVE-2023-24531 (Critical) |
tanzu-jammy-stack |
CVE-2023-29405 (Critical) |
tanzu-jammy-stack |
CVE-2023-29404 (Critical) |
tanzu-jammy-stack |
CVE-2023-29402 (Critical) |
tanzu-jammy-stack |
CVE-2022-32221 (Critical) |
tanzu-jammy-stack |
CVE-2022-1292 (Critical) |
tanzu-jammy-stack |
CVE-2022-2068 (Critical) |
tanzu-jammy-stack |
CVE-2022-32207 (Critical) |
tanzu-jammy-stack |
CVE-2025-4517 (Critical) |
tanzu-jammy-stack |
CVE-2025-22871 (Critical) |
tanzu-jammy-stack otel-collector |
GHSA-v778-237x-gjrc (CVE-2024-45337) (Critical) |
tanzu-jammy-stack |
CVE-2023-23914 (Critical) |
tanzu-jammy-stack |
CVE-2024-5535 (Critical) |
tanzu-jammy-stack |
CVE-2023-27534 (High) |
tanzu-jammy-stack |
CVE-2022-1271 (High) |
tanzu-jammy-stack |
CVE-2023-27533 (High) |
tanzu-jammy-stack |
CVE-2024-8088 (High) |
tanzu-jammy-stack |
CVE-2024-2398 (High) |
tanzu-jammy-stack |
CVE-2022-42915 (High) |
tanzu-jammy-stack |
CVE-2023-39323 (High) |
tanzu-jammy-stack |
CVE-2024-53427 (High) |
tanzu-jammy-stack |
CVE-2022-22576 (High) |
tanzu-jammy-stack |
GHSA-36jr-mh4h-2g58 (No known CVE) (High) |
tanzu-jammy-stack |
CVE-2023-6597 (High) |
tanzu-jammy-stack |
CVE-2023-29403 (High) |
tanzu-jammy-stack |
CVE-2023-4807 (High) |
tanzu-jammy-stack |
CVE-2024-9287 (High) |
tanzu-jammy-stack |
GHSA-vvpx-j8f3-3w6h (CVE-2022-41723) (High) |
tanzu-jammy-stack |
CVE-2023-0464 (High) |
tanzu-jammy-stack |
CVE-2022-27775 (High) |
tanzu-jammy-stack |
CVE-2023-0217 (High) |
tanzu-jammy-stack |
CVE-2024-24784 (High) |
tanzu-jammy-stack |
CVE-2024-4032 (High) |
tanzu-jammy-stack |
CVE-2023-45283 (High) |
tanzu-jammy-stack |
CVE-2022-27780 (High) |
tanzu-jammy-stack |
CVE-2022-27781 (High) |
tanzu-jammy-stack |
CVE-2023-0216 (High) |
tanzu-jammy-stack |
CVE-2025-4330 (High) |
tanzu-jammy-stack |
CVE-2024-4741 (High) |
tanzu-jammy-stack |
CVE-2022-3602 (High) |
otel-collector tanzu-jammy-stack |
GHSA-hcg3-q754-cr77 (CVE-2025-22869) (High) |
tanzu-jammy-stack |
CVE-2023-45285 (High) |
tanzu-jammy-stack |
CVE-2022-43551 (High) |
tanzu-jammy-stack |
CVE-2024-7592 (High) |
tanzu-jammy-stack |
CVE-2023-45288 (High) |
tanzu-jammy-stack |
CVE-2025-4138 (High) |
tanzu-jammy-stack |
CVE-2022-1473 (High) |
tanzu-jammy-stack |
CVE-2023-0401 (High) |
tanzu-jammy-stack |
CVE-2024-34158 (High) |
tanzu-jammy-stack |
CVE-2023-36632 (High) |
tanzu-jammy-stack |
GHSA-4374-p667-p6c8 (CVE-2023-39325) (High) |
tanzu-jammy-stack |
CVE-2023-39325 (High) |
tanzu-jammy-stack |
CVE-2024-6119 (High) |
tanzu-jammy-stack |
CVE-2023-28319 (High) |
tanzu-jammy-stack |
CVE-2022-3786 (High) |
tanzu-jammy-stack |
CVE-2025-48060 (High) |
tanzu-jammy-stack |
CVE-2022-42916 (High) |
tanzu-jammy-stack |
CVE-2023-0215 (High) |
tanzu-jammy-stack |
CVE-2024-24791 (High) |
tanzu-jammy-stack |
CVE-2024-6232 (High) |
tanzu-jammy-stack |
CVE-2022-4450 (High) |
tanzu-jammy-stack |
CVE-2022-3358 (High) |
tanzu-jammy-stack |
CVE-2023-5363 (High) |
tanzu-jammy-stack |
CVE-2022-3996 (High) |
tanzu-jammy-stack |
CVE-2023-44487 (High) |
tanzu-jammy-stack |
CVE-2024-34156 (High) |
otel-collector |
GHSA-93mq-9ffx-83m2 (CVE-2025-29786) (High) |
tanzu-jammy-stack |
CVE-2025-4435 (High) |
tanzu-jammy-stack |
CVE-2022-27782 (High) |
tanzu-jammy-stack |
CVE-2024-0397 (High) |
tanzu-jammy-stack |
CVE-2023-0286 (High) |
tanzu-jammy-stack |
CVE-2025-0725 (High) |
tanzu-jammy-stack |
CVE-2024-4030 (High) |
otel-collector tanzu-jammy-stack |
CVE-2025-4673 (Medium) |
tanzu-jammy-stack |
CVE-2024-8096 (Medium) |
tanzu-jammy-stack |
CVE-2022-27776 (Medium) |
tanzu-jammy-stack |
CVE-2022-32206 (Medium) |
tanzu-jammy-stack |
CVE-2023-45290 (Medium) |
tanzu-jammy-stack |
CVE-2023-2650 (Medium) |
tanzu-jammy-stack |
CVE-2024-7264 (Medium) |
tanzu-jammy-stack |
CVE-2023-29406 (Medium) |
tanzu-jammy-stack |
CVE-2023-46218 (Medium) |
tanzu-jammy-stack |
CVE-2023-6129 (Medium) |
tanzu-jammy-stack |
CVE-2023-23915 (Medium) |
tanzu-jammy-stack |
CVE-2023-23916 (Medium) |
tanzu-jammy-stack |
CVE-2024-9681 (Medium) |
tanzu-jammy-stack |
CVE-2024-23337 (Medium) |
tanzu-jammy-stack |
CVE-2024-24787 (Medium) |
tanzu-jammy-stack |
CVE-2024-47611 (Medium) |
tanzu-jammy-stack |
CVE-2025-0938 (Medium) |
tanzu-jammy-stack |
CVE-2024-0450 (Medium) |
tanzu-jammy-stack |
CVE-2024-45341 (Medium) |
tanzu-jammy-stack |
CVE-2024-45336 (Medium) |
tanzu-jammy-stack |
CVE-2023-39319 (Medium) |
tanzu-jammy-stack |
CVE-2023-39318 (Medium) |
tanzu-jammy-stack |
GHSA-2wrh-6pvc-2jm9 (CVE-2023-3978) (Medium) |
otel-collector tanzu-jammy-stack |
GHSA-vvgc-356p-c3xw (CVE-2025-22872) (Medium) |
tanzu-jammy-stack |
CVE-2024-24783 (Medium) |
tanzu-jammy-stack |
CVE-2022-4304 (Medium) |
tanzu-jammy-stack |
CVE-2023-1255 (Medium) |
tanzu-jammy-stack |
CVE-2025-4516 (Medium) |
tanzu-jammy-stack |
CVE-2023-28320 (Medium) |
tanzu-jammy-stack |
CVE-2023-28321 (Medium) |
tanzu-jammy-stack |
CVE-2022-32208 (Medium) |
tanzu-jammy-stack |
CVE-2022-1434 (Medium) |
tanzu-jammy-stack |
CVE-2024-2511 (Medium) |
tanzu-jammy-stack |
GHSA-45x7-px36-x8w8 (CVE-2023-48795) (Medium) |
tanzu-jammy-stack |
CVE-2024-50602 (Medium) |
tanzu-jammy-stack |
CVE-2022-43552 (Medium) |
tanzu-jammy-stack |
CVE-2023-6237 (Medium) |
tanzu-jammy-stack |
CVE-2022-27774 (Medium) |
tanzu-jammy-stack |
CVE-2024-24789 (Medium) |
tanzu-jammy-stack |
CVE-2020-22916 (Medium) |
tanzu-jammy-stack |
CVE-2021-3995 (Medium) |
tanzu-jammy-stack |
CVE-2024-6923 (Medium) |
tanzu-jammy-stack |
CVE-2021-3996 (Medium) |
tanzu-jammy-stack |
CVE-2024-0727 (Medium) |
tanzu-jammy-stack |
CVE-2022-0563 (Medium) |
tanzu-jammy-stack otel-collector |
CVE-2025-0913 (Medium) |
tanzu-jammy-stack |
CVE-2024-24785 (Medium) |
otel-collector tanzu-jammy-stack |
GHSA-p782-xgp4-8hr8 (CVE-2022-29526) (Medium) |
tanzu-jammy-stack |
CVE-2023-3817 (Medium) |
tanzu-jammy-stack |
CVE-2022-1343 (Medium) |
tanzu-jammy-stack |
CVE-2024-4603 (Medium) |
tanzu-jammy-stack |
GHSA-4v7x-pqxf-cx7m (CVE-2023-45288) (Medium) |
tanzu-jammy-stack |
CVE-2024-12718 (Medium) |
tanzu-jammy-stack |
CVE-2023-0466 (Medium) |
tanzu-jammy-stack |
CVE-2023-0465 (Medium) |
tanzu-jammy-stack |
CVE-2023-2975 (Medium) |
otel-collector |
GHSA-fv92-fjc5-jj9h (No known CVE) (Medium) |
tanzu-jammy-stack |
CVE-2023-27043 (Medium) |
tanzu-jammy-stack |
CVE-2023-29409 (Medium) |
tanzu-jammy-stack |
CVE-2023-5678 (Medium) |
tanzu-jammy-stack |
CVE-2023-45284 (Medium) |
tanzu-jammy-stack |
CVE-2023-40217 (Medium) |
tanzu-jammy-stack |
CVE-2023-39326 (Medium) |
tanzu-jammy-stack |
CVE-2022-2097 (Medium) |
tanzu-jammy-stack |
GHSA-qppj-fm5r-hxr3 (CVE-2023-44487) (Medium) |
tanzu-jammy-stack |
CVE-2023-3446 (Medium) |
tanzu-jammy-stack |
CVE-2024-3219 (Medium) |
tanzu-jammy-stack |
CVE-2022-4203 (Medium) |
tanzu-jammy-stack otel-collector |
GHSA-qxp5-gwg8-xv66 (CVE-2025-22870) (Medium) |
tanzu-jammy-stack |
CVE-2025-6069 (Medium) |
tanzu-jammy-stack |
CVE-2024-9143 (Medium) |
tanzu-jammy-stack |
CVE-2024-34155 (Medium) |
tanzu-jammy-stack |
CVE-2023-45289 (Medium) |
tanzu-jammy-stack |
CVE-2022-32205 (Medium) |
tanzu-jammy-stack |
CVE-2024-13176 (Medium) |
tanzu-jammy-stack |
CVE-2025-22866 (Medium) |
tanzu-jammy-stack |
CVE-2024-11168 (Low) |
tanzu-jammy-stack |
CVE-2023-28322 (Low) |
tanzu-jammy-stack |
CVE-2022-35252 (Low) |
tanzu-jammy-stack |
CVE-2025-0167 (Low) |
tanzu-jammy-stack |
CVE-2024-11053 (Low) |
tanzu-jammy-stack |
CVE-2024-28085 (Low) |
tanzu-jammy-stack |
CVE-2025-1795 (Low) |