Description
The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-12591 | The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory. |
References
| Link | Providers |
|---|---|
| https://advisory.teradici.com/security-advisories/102/ |
|
History
No history.
Status: PUBLISHED
Assigner: Teradici
Published:
Updated: 2024-08-03T20:11:27.997Z
Reserved: 2021-01-21T00:00:00.000Z
Link: CVE-2021-25699
No data.
Status : Modified
Published: 2021-07-21T15:15:15.947
Modified: 2024-11-21T05:55:18.820
Link: CVE-2021-25699
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD