Citrix urges upgrade to avoid vulnerability

Powered by SC Magazine
 

Software vendor Citrix has advised users of its Presentation Server Client to upgrade to version 10 of the software to avoid being exploited by a ‘highly critical’ vulnerability discovered this week.

The vulnerability, caused by an unspecified error in ICA connections when using a proxy server can allow an attacker to exploit the flaw and execute arbitrary code onto a victim’s system, according to the Citrix advisory.

Andrew McPherson, Asia Pacific technical support manager at Citrix Systems told SC that where possible, the satisfactory solution for customers is to upgrade to version 10 which replaces all previous affected versions and is freely available for download.

For multi-PC environments that can’t immediately upgrade software, a patched release of the client version 9.237 is available from Citrix technical support and will be available till mid-2007.

“This version of the client 9.237 will provide a temporary work-around until version 10.0 can be deployed,” said McPherson.

Citrix urges upgrade to avoid vulnerability
 
 
 
Top Stories
Beyond ACORN: Cracking the infosec skills nut
[Blog post] Could the Government's cybercrime focus be a catalyst for change?
 
The iTnews Benchmark Awards
Meet the best of the best.
 
Telstra hands over copper, HFC in new $11bn NBN deal
Value of 2011 deal remains intact.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Who do you trust most to protect your private data?







   |   View results
Your bank
  38%
 
Your insurance company
  4%
 
A technology company (Google, Facebook et al)
  8%
 
Your telco, ISP or utility
  8%
 
A retailer (Coles, Woolworths et al)
  3%
 
A Federal Government agency (ATO, Centrelink etc)
  19%
 
An Australian law enforcement agency (AFP, ASIO et al)
  14%
 
A State Government agency (Health dept, etc)
  6%
TOTAL VOTES: 1878

Vote
Do you support the abolition of the Office of the Information Commissioner?