Vulnerability Description
An issue in the native clients for Amazon WorkSpaces (when running PCoIP protocol) may allow an attacker to access remote sessions via man-in-the-middle.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://aws.amazon.com/security/security-bulletins/AWS-2025-001/
- https://docs.aws.amazon.com/workspaces/latest/userguide/amazon-workspaces-androi
- https://docs.aws.amazon.com/workspaces/latest/userguide/amazon-workspaces-linux-
- https://docs.aws.amazon.com/workspaces/latest/userguide/amazon-workspaces-osx-cl
- https://docs.aws.amazon.com/workspaces/latest/userguide/amazon-workspaces-window
FAQ
What is CVE-2025-0501?
CVE-2025-0501 is a vulnerability with a CVSS score of 7.5 (HIGH). An issue in the native clients for Amazon WorkSpaces (when running PCoIP protocol) may allow an attacker to access remote sessions via man-in-the-middle.
How severe is CVE-2025-0501?
CVE-2025-0501 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-0501?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.