CVE-2020-9497
published 2020-07-02CVE-2020-9497: Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or…
PriorityP421medium4.4CVSS 3.1
AVLACHPRLUIRSUCHINAN
EPSS
0.80%
52.3th percentile
Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | guacamole | <= 1.1.0 | — |
| apache | guacamole | — | — |
| debian | debian_linux | — | — |
| debian | guacamole-server | < guacamole-server 1.3.0-1 (bullseye) | guacamole-server 1.3.0-1 (bullseye) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
CVSS provenance
nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N
nvdv2.01.2LOWAV:L/AC:H/Au:N/C:P/I:N/A:N
osv4.4MEDIUM
vendor_apache4.4MEDIUM
vendor_debian4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2020-9497: guacamole-server - Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP ...
vendor_debian·2020·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497: guacamole-server - Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP ...
Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.
Scope: local
bullseye: resolved (fixed in 1.3.0-1)
Apache
Apache guacamole: CVE-2020-9497
vendor_apache·CVSS 4.4
CVE-2020-9497 [MEDIUM] Apache guacamole: CVE-2020-9497
Apache guacamole: CVE-2020-9497
Apache Guacamole 1.1.0 and older do not properly validate data received from RDP servers via static virtual channels. If a user connects to a malicious or compromised RDP server, specially-crafted PDUs could result in disclosure of information within the memory of the guacd process handling the connection. Acknowledgements: We would like to thank GitHub Security Lab and Eyal Itkin (Check Point Research) for reporting this issue.
GHSA
GHSA-9q4f-696q-fjxm: Apache Guacamole 1
ghsa_unreviewed·2022-05-24
CVE-2020-9497 [MEDIUM] CWE-200 GHSA-9q4f-696q-fjxm: Apache Guacamole 1
Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.
OSV
CVE-2020-9497: Apache Guacamole 1
osv·2020-07-02·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497: Apache Guacamole 1
Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs could result in disclosure of information within the memory ofthe guacd process handling the connection.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-6]
bugzilla·2020-07-02·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-6]
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following templ
Bugzilla
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels
bugzilla·2020-07-02·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels
Apache Guacamole 1.1.0 and older do not properly validate data
received from RDP servers via static virtual channels. If a user
connects to a malicious or compromised RDP server, specially-crafted
PDUs could result in disclosure of information within the memory of
the guacd process handling the connection.
Mitigation:
Users of versions of Apache Guacamole 1.1.0 and older that provide
access to untrusted RDP servers should upgrade to 1.2.0.
Discussion:
External References:
https://lists.apache.org/thread.html/r65f75d3d65d1af68141f42071ebb27dda24af3e45570e593c1dbd81f%40%3Cannounce.guacamole.apache.org%3E
---
Created guacamole-server tracking bugs for this issue:
Affects: epel-6 [bug 1853392]
Affe
Bugzilla
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-7]
bugzilla·2020-07-02·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-7]
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the following templ
Bugzilla
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [fedora-all]
bugzilla·2020-07-02·CVSS 4.4
CVE-2020-9497 [MEDIUM] CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [fedora-all]
CVE-2020-9497 guacamole-server: Improper input validation of RDP static virtual channels [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects mul
https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44525https://lists.apache.org/thread.html/r066543f0565e97b27c0dfe27e93e8a387b99e1e35764000224ed96e7%40%3Cuser.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r1125f3044a0946d1e7e6f125a6170b58d413ebd4a95157e4608041c7%40%3Cannounce.apache.org%3Ehttps://lists.apache.org/thread.html/r181b1d5b1acb31cfa69f41b2c86ed3a2cb0b5bc09c2cbd31e9e7c847%40%3Cuser.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r3f071de70ea1facd3601e0fa894e6cadc960627ee7199437b5a56f7f%40%3Cannounce.apache.org%3Ehttps://lists.apache.org/thread.html/r65f75d3d65d1af68141f42071ebb27dda24af3e45570e593c1dbd81f%40%3Cannounce.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r90890afea72a9571d666820b2fe5942a0a5f86be406fa31da3dd0922%40%3Cannounce.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2020/11/msg00010.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVV5K2X4EXSAVUUL7IJ3MUJ3ADWMVSBM/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WNS7UHBOFV6JHWH5XOEZTE3BREGRSSQ3/https://research.checkpoint.com/2020/apache-guacamole-rce/https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44525https://lists.apache.org/thread.html/r066543f0565e97b27c0dfe27e93e8a387b99e1e35764000224ed96e7%40%3Cuser.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r1125f3044a0946d1e7e6f125a6170b58d413ebd4a95157e4608041c7%40%3Cannounce.apache.org%3Ehttps://lists.apache.org/thread.html/r181b1d5b1acb31cfa69f41b2c86ed3a2cb0b5bc09c2cbd31e9e7c847%40%3Cuser.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r3f071de70ea1facd3601e0fa894e6cadc960627ee7199437b5a56f7f%40%3Cannounce.apache.org%3Ehttps://lists.apache.org/thread.html/r65f75d3d65d1af68141f42071ebb27dda24af3e45570e593c1dbd81f%40%3Cannounce.guacamole.apache.org%3Ehttps://lists.apache.org/thread.html/r90890afea72a9571d666820b2fe5942a0a5f86be406fa31da3dd0922%40%3Cannounce.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2020/11/msg00010.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVV5K2X4EXSAVUUL7IJ3MUJ3ADWMVSBM/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WNS7UHBOFV6JHWH5XOEZTE3BREGRSSQ3/https://research.checkpoint.com/2020/apache-guacamole-rce/
2020-07-02
Published