PT-2020-5908 · Apache · Apache Guacamole

Eyal Itkin

·

Published

2020-07-02

·

Updated

2024-03-06

·

CVE-2020-9498

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Apache Guacamole versions 1.1.0 and older
Description: The issue is related to the mishandling of pointers involved in processing data received via RDP static virtual channels. If a user connects to a malicious or compromised RDP server, a series of specially-crafted PDUs could result in memory corruption, possibly allowing arbitrary code to be executed with the privileges of the running guacd process. This can be described as a buffer overflow operation in memory, which may allow an attacker to elevate their privileges and execute arbitrary code.
Recommendations: For Apache Guacamole versions 1.1.0 and older, consider updating to a newer version to mitigate the risk of exploitation. As a temporary workaround, restrict access to RDP static virtual channels to minimize the risk of memory corruption. Avoid connecting to untrusted or potentially compromised RDP servers until the issue is resolved.

Fix

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-02004
BIT-GUACAMOLE-2020-9498
BIT-GUACAMOLE-SERVER-2020-9498
CVE-2020-9498
DLA-2435-1
MGASA-2021-0272

Affected Products

Apache Guacamole