Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in server memory, which may allow an attacker to read confidential information from a memory dump via forcing a crashing during the single sign-on procedure.
References
Link | Resource |
---|---|
https://advisory.teradici.com/security-advisories/60/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-08-11 12:15
Updated : 2021-11-04 09:10
NVD link : CVE-2020-13179
Mitre link : CVE-2020-13179
JSON object : View
CWE
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer
Products Affected
teradici
- pcoip_standard_agent
- graphics_agent