SB2022011217 - Multiple vulnerabilities in Apache Guacamole
Published: January 12, 2022
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 2 secuirty vulnerabilities.
1) Improper Authorization (CVE-ID: CVE-2021-43999)
The vulnerability allows a remote user to bypass authorization process.
The vulnerability exist due to improper validation responses, received from a SAML identity provider. A remote user can assume identity of another Guacamole user, is SAML support is enabled.
2) Information disclosure (CVE-ID: CVE-2021-41767)
The vulnerability allows a remote user to bypass implemented security restrictions.
The vulnerability exists due to the application includes a private tunnel identifier in the non-private details of some REST responses. A remote user can obtain the private tunnel identifier and use it to interact with another user's active use of that same connection.Remediation
Install update from vendor's website.