Race Condition in Guacamole Terminal Emulator Affects Apache Software
CVE-2017-3158
8.1HIGH
What is CVE-2017-3158?
The vulnerability in the terminal emulator of Apache Guacamole due to a race condition allows for overlapping writes of printed data blocks. This mismanagement can cause packet length misreads, leading to data exceeding the bounds of a statically-allocated buffer, potentially allowing for unintended behaviors and data corruption in the system.
Affected Version(s)
Apache Guacamole Apache Guacamole 0.9.5 to 0.9.10-incubating