Skip to main content

Citrix Releases Security Update for Hypervisor

Security update addresses two vulnerabilities affecting Citrix Hypervisor

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

Security update addresses two vulnerabilities affecting Citrix Hypervisor


Affected platforms

The following platforms are known to be affected:

Threat details

Introduction

Citrix has released a security update to address two vulnerabilities affecting Citrix Hypervisor. The vulnerability known as CVE-2022-33748 could allow two malicious privileged users in separate guest VMs to cause the host to crash or become unresponsive. CVE-2022-33749 could allow a malicious unauthenticated user on the management network to cause the management service on the host to crash or become unresponsive.

An attacker could exploit these vulnerabilities to carry out a denial-of-service (DoS) attack.


Remediation advice

Affected organisations are encouraged to review Citrix Security Update CTX465146 and apply the relevant updates.




Last edited: 12 October 2022 4:30 pm