Security Advisory

CVE-2021-25699

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-21 12:26:47
Last updated 2024-08-03 20:11:27
Assigner Teradici
State PUBLISHED

Description

The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory.