logo

Vulnerability details for CVE-2020-9498 

Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious or compromised RDP server, a series ofspecially-crafted PDUs could result in memory corrupti...

CVSS Score (Vector) 6.2 (AV:L/AC:H/Au:N/C:C/I:C/A:C)
ThreatWorx Rating 4 - Critical
Weakness Types Improper Restriction of Operations within the Bounds of a Memory Buffer, Memory Corruption, Information Leak / Disclosure, Code Execution
Reported By Red Hat, Security Research, IoT, Open Source, Ubuntu
First Reported Jul 02, 2020 by Open Source
Last Updated Jan 26, 2022 by Open Source
NVD Status Published CVE-2020-9498
Affected Products 145 affected product(s) reported by Red Hat, Security Research, IoT, Open Source
Patches 5 patch(es) published by IoT, Ubuntu
Remediations 2 remediation(s) published by Open Source
Latest Reference Open Source