Citrix Hypervisor Security Bulletin for CVE-2020-35498

Citrix Hypervisor Security Bulletin for CVE-2020-35498

book

Article ID: CTX463901

calendar_today

Updated On:

Description

An issue has been identified in Citrix Hypervisor 8.2 LTSR CU1 Hotfix XS82ECU1008 (only) that may allow malicious network traffic to cause subsequent packets to be dropped.  
 

This issue has the following identifier: 

CVE ID

Description

Type

Pre-requisites

CVE-2020-35498

Malicious network traffic on the local network may cause subsequent packets to be dropped

CWE-682: Incorrect Calculation

Access to the local network


Mitigating Factors

Customers using Citrix Hypervisor 8.2 CU1 who have not applied Hotfix XS82ECU1008 are not affected by this issue. 

Instructions

Citrix has released a hotfix to address this issue. Citrix recommends that affected customers install these hotfixes as soon as their patching schedule allows.  The hotfix can be downloaded from the following locations: 

Citrix Hypervisor 8.2 CU1 LTSR: CTX463900 – https://support.citrix.com/article/CTX463900 

Additional Information

DateChange
2022-09-13Initial Publication