CVE-2007-0444
Summary
| CVE | CVE-2007-0444 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-01-24 22:28:00 UTC |
| Updated | 2018-10-16 16:32:00 UTC |
| Description | Stack-based buffer overflow in the print provider library (cpprov.dll) in Citrix Presentation Server 4.0, MetaFrame Presentation Server 3.0, and MetaFrame XP 1.0 allows local users and remote attackers to execute arbitrary code via long arguments to the (1) EnumPrintersW and (2) OpenPrinter functions. |
Risk And Classification
Problem Types: CWE-119
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Citrix | Metaframe | 1.0 | All | xp | All |
| Application | Citrix | Metaframe | 1.0 | All | xp | All |
| Application | Citrix | Metaframe Presentation Server | 3.0 | All | All | All |
| Application | Citrix | Metaframe Presentation Server | 4.0 | All | All | All |
| Application | Citrix | Metaframe Presentation Server | 3.0 | All | All | All |
| Application | Citrix | Metaframe Presentation Server | 4.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | Vendor Advisory |
| ZDI-07-006 | MISC | www.zerodayinitiative.com | |
| SecurityTracker.com Archives - Citrix MetaFrame Presentation Server Buffer Overflow in 'cpprov.dll' Lets Remote Users Execute Arbitrary Code | SECTRACK | securitytracker.com | |
| www.securityfocus.com/data/vulnerabilities/exploits/testlpc.c | MISC | www.securityfocus.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Citrix Presentation Server Print Provider Buffer Overflow Vulnerability - Advisories - Secunia | SECUNIA | secunia.com | Vendor Advisory |
| CTX111686 - Vulnerability in Citrix Presentation Server's print provider could result in arbitrary code execution - Citrix Knowledge Center | CONFIRM | support.citrix.com | Vendor Advisory |
| Citrix Presentation and MetaFrame Server Cpprov.DLL Stack Buffer Overflow Vulnerability | BID | www.securityfocus.com | |
| 32958 | OSVDB | osvdb.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.