Citrix urges upgrade to avoid vulnerability

By

Software vendor Citrix has advised users of its Presentation Server Client to upgrade to version 10 of the software to avoid being exploited by a ‘highly critical’ vulnerability discovered this week.

Citrix urges upgrade to avoid vulnerability
The vulnerability, caused by an unspecified error in ICA connections when using a proxy server can allow an attacker to exploit the flaw and execute arbitrary code onto a victim’s system, according to the Citrix advisory.

Andrew McPherson, Asia Pacific technical support manager at Citrix Systems told SC that where possible, the satisfactory solution for customers is to upgrade to version 10 which replaces all previous affected versions and is freely available for download.

For multi-PC environments that can’t immediately upgrade software, a patched release of the client version 9.237 is available from Citrix technical support and will be available till mid-2007.

“This version of the client 9.237 will provide a temporary work-around until version 10.0 can be deployed,” said McPherson.
Got a news tip for our journalists? Share it with us anonymously here.
Tags:

Most Read Articles

Microsoft knew of SharePoint security flaw in May, initial patch ineffective

Microsoft knew of SharePoint security flaw in May, initial patch ineffective

ACSC alerts to exploited MS SharePoint remote code execution flaw

ACSC alerts to exploited MS SharePoint remote code execution flaw

"PoisonSeed" attack does not bypass hardware MFA

"PoisonSeed" attack does not bypass hardware MFA

Microsoft issues patches for "ToolShell" vulnerable SharePoint Servers

Microsoft issues patches for "ToolShell" vulnerable SharePoint Servers

Log In

  |  Forgot your password?