Citrix fixed a critical flaw in Secure Access Client for Ubuntu
Vulnerabilities mentionedAll →
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2023-24492 | A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a vic A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a victim user opens an attacker-crafted link and accepts further prompts. NVD description · AI analysis pending | 8.8 | <1% |
| — |
Full article142 words · extracted from securityaffairs.com · click to collapse

Citrix fixed a critical flaw affecting the Secure Access client for Ubuntu that could be exploited to achieve remote code execution.
Citrix addressed a critical vulnerability, tracked as CVE-2023-24492 (CVSS score of 9.6), affecting the Secure Access client for Ubuntu that could be exploited to achieve remote code execution.
An attacker can trigger the vulnerability by tricking the victim into opening a specially crafted link and accepting further prompts.
The vulnerability affects versions of Citrix Secure Access client for Ubuntu before 23.5.2, the issue has been addressed in 23.5.2 and later releases.
The vulnerability was reported by Rilke Petrosky of F2TC Cyber Security.
The advisory published by the company did not reveal if the vulnerability has been actively exploited by threat actors in the wild.
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, Citrix)
Text extracted automatically; images, tables and formatting may be missing. Original: https://securityaffairs.com/148405/security/citrix-critical-flaw-secure-access-client-for-ubuntu.html