CVE-2023-24486

CVE-2023-24486: Local user access to a system where another user is utilizing a vulnerable version of Citrix Workspace App for Linux to launch published desktops and applications

Vendor Citrix
Product Citrix Workspace app for Linux
Weakness CWE-284
Published July 10, 2023
Last update October 25, 2024

CVSS base score

What the vulnerability does

01Description

A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who is using the same computer from which the ICA session is launched.

Key dates

02Disclosure timeline

July 10, 2023 CVE published
October 25, 2024 Record updated