book
Article ID: CTX677069
calendar_today
Updated On:
Description
Cloud Software Group has evaluated the impact of vulnerability CVE-2024-3661 on our products. This vulnerability may allow an attacker on the same local network as the victim to read, disrupt, or modify network traffic expected to be protected by the VPN.
Please find below the impact status:
-
Citrix Secure Access client for Windows
-
Citrix Secure Access client for Android
-
Citrix Secure Access client for Linux
-
Citrix Secure Access client for Mac/iOS
set Local LAN access to ‘OFF’ on the Gateway
What Citrix is Doing
Obtaining Support on This Issue
Subscribe to Receive Alerts
Reporting Security Vulnerabilities to Citrix
Citrix welcomes input regarding the security of its products and considers any and all potential vulnerabilities seriously. For details on our vulnerability response process and guidance on how to report security-related issues to Citrix, please see the following webpage:
https://www.citrix.com/about/trust-center/vulnerability-process.html.
Disclaimer
This document is provided on an "as is" basis and does not imply any kind of guarantee or warranty, including the warranties of merchantability or fitness for a particular use. Your use of the information on the document is at your own risk. Citrix reserves the right to change or update this document at any time. Customers are therefore recommended to always view the latest version of this document directly from the Citrix Knowledge Center.
Changelog
2024-06-24 | Initial Publication |
2024-06-24 | Enabled email notification to subscribers |
2024-09-17 | Added information about Citrix Secure Access client for Linux |