Citrix security updates

Number: AV17-025
Date: 23 February 2017

Purpose

The purpose of the advisory is to bring attention to the recently released security updates for Citrix.

Assessment

Citrix has released security updates to address two (2) High vulnerabilities that could allow the administrator of an HVM guest VM to compromise CompromiseThe intentional or unintentional disclosure of information, which adversely impacts its confidentiality, integrity, or availability. the host.

Affected Version:

  • Citrix XenServer 6.0.2 Common Criteria
  • Citrix XenServer 6.2 SP1
  • Citrix XenServer 6.5 SP1
  • Citrix XenServer 7.0

CVE Reference: CVE-2017-2615, CVE-2017-2620

Suggested Action

CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.

References:

Date modified: