Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer. Depending on timing, this may allow an attacker to execute arbitrary code with the privileges of the guacd process.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"introduced": "0.9.10"
},
{
"last_affected": "1.5.1"
}
],
"source": "AFFECTED_FIELD"
},
{
"extracted_events": [
{
"introduced": "0.9.10"
},
{
"fixed": "1.5.1"
}
],
"source": "DESCRIPTION"
}
],
"cwe_ids": [
"CWE-416"
],
"cna_assigner": "apache",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/30xxx/CVE-2023-30576.json"
}