Number: AV17-025
Date: 23 February 2017
Purpose
The purpose of the advisory is to bring attention to the recently released security updates for Citrix.
Assessment
Citrix has released security updates to address two (2) High vulnerabilities that could allow the administrator of an HVM guest VM to compromise the host.
Affected Version:
- Citrix XenServer 6.0.2 Common Criteria
- Citrix XenServer 6.2 SP1
- Citrix XenServer 6.5 SP1
- Citrix XenServer 7.0
CVE Reference: CVE-2017-2615, CVE-2017-2620
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.
References: