Apache vulnerability CVE-2006-20001 CVE-2022-36760  CVE-2022-37436 in License Server version 11.17.2

Apache vulnerability CVE-2006-20001 CVE-2022-36760  CVE-2022-37436 in License Server version 11.17.2

book

Article ID: CTX477512

calendar_today

Updated On:

Description

Apache/2.4.54 contains vulnerabilities and is used in the Citrix License Server version 11.17.2 build 41000.
Security scans may raise the following CVEs:
CVE-2006-20001
CVE-2022-36760 
CVE-2022-37436
 

Environment

Citrix is not responsible for and does not endorse or accept any responsibility for the contents or your use of these third party Web sites. Citrix is providing these links to you only as a convenience, and the inclusion of any link does not imply endorsement by Citrix of the linked Web site. It is your responsibility to take precautions to ensure that whatever Web site you use is free of viruses or other harmful items.

Resolution

No action is required.

Citrix License Server does not contain the affected modules: mod_dav and mod_proxy* and is therefore not affected by these vulnerabilities.

Problem Cause

Apache 2.4.54 has known vulnerabilities that may be flagged by security scans. For example, https://www.tenable.com/plugins/nessus/170113