CVE-2012-6314: Medium severity citrix virtual apps and desktops vulnerability
Published Dec 26, 2012
·Updated
Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does not propagate changes to the VDA, which allows authenticated users to retain access to the USB device.
Affected Software
1 affected component
Citrix XenDesktop=5.6
Event History
Dec 26, 2012
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6314?
CVE-2012-6314 has a medium severity level due to potential unauthorized access to USB devices.
2
How do I fix CVE-2012-6314?
To fix CVE-2012-6314, update the Citrix XenDesktop Virtual Desktop Agent to version 5.6.200 or later.
3
Who is affected by CVE-2012-6314?
CVE-2012-6314 affects users of Citrix XenDesktop Virtual Desktop Agent version 5.6.x prior to 5.6.200.
4
What is the impact of CVE-2012-6314?
The impact of CVE-2012-6314 is that authenticated users may improperly access USB devices without proper server-side policy enforcement.
5
When was CVE-2012-6314 published?
CVE-2012-6314 was published in 2012.