Citrix Workspace App for Linux Security Update

Citrix Workspace App for Linux Security Update

book

Article ID: CTX338435

calendar_today

Updated On:

Description

A vulnerability has been identified in Citrix Workspace app for Linux that could result in a local user elevating their privilege level to root on the computer running Citrix Workspace app for Linux. 

The vulnerability has the following identifier: 

CVE ID 

Description 

Vulnerability Type 

Pre-conditions 

CVE-2022-21825 

Local privilege Escalation 

CWE-284: Improper Access Control 

Local user access to a system where Citrix Workspace App for Linux has been installed with App Protection. 

This vulnerability only affects Citrix Workspace app for Linux 2012 - 2111 and only exists if App Protection was installed as part of Citrix Workspace app for Linux. This vulnerability does not exist if App Protection is not installed.

Citrix Workspace app for other platforms is not affected by this issue. 

 


Instructions

This issue has been addressed in the following versions of Citrix Workspace app for Linux:  

  • Citrix Workspace App for Linux 2112 and later versions

Citrix strongly recommends that affected customers upgrade to a fixed version as soon as possible. 

The latest version of Citrix Workspace app for Linux is available from the following Citrix website location: 

https://www.citrix.com/downloads/workspace-app/linux/ 


Acknowledgements

Citrix thanks Florian Kerber of Siemens CERT for working with us to protect Citrix customers.

Additional Information

DateChange
2022-01-11Initial Publication