First published: Wed Dec 26 2012(Updated: )
Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does not propagate changes to the VDA, which allows authenticated users to retain access to the USB device.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix XenDesktop | =5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-6314 has a medium severity level due to potential unauthorized access to USB devices.
To fix CVE-2012-6314, update the Citrix XenDesktop Virtual Desktop Agent to version 5.6.200 or later.
CVE-2012-6314 affects users of Citrix XenDesktop Virtual Desktop Agent version 5.6.x prior to 5.6.200.
The impact of CVE-2012-6314 is that authenticated users may improperly access USB devices without proper server-side policy enforcement.
CVE-2012-6314 was published in 2012.