|
|
Info |
Last Modified |
| 2 months ago |
|
|
|
|
Description |
A remote overflow exists in Citrix Presentation Server Independent Management Architecture Service. The service fails to validate a parameter used for memory allocation, which may result in a heap overflow if an attacker sends an overly large packet. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of confidentiality, integrity, or availability.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Integrity,
Loss of Availability
Solution:
Patch
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified
|
|
Technical |
The process trusts a user-suppled value as a parameter to a memory allocation. By supplying a specific value, an undersized heap buffer may be allocated. Subsequently, an attacker can then overflow that heap buffer by sending an overly large packet leading to arbitrary code execution in the context of the SYSTEM user.
|
|
Solution |
Currently, there are no known workarounds or upgrades to correct this issue. However, Citrix has released a patch to address this vulnerability.
|
|
Products |
|
Presentation Server
 |
4.5 |
|
|
|
|
|
|
Credit |
- Eric Detoisien - eric.detoisien
global-secure.fr - Global Secure
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|