Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
BID:15907
Info
Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
| Bugtraq ID: | 15907 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2005-3652 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 16 2005 12:00AM |
| Updated: | Dec 16 2005 12:00AM |
| Credit: | Patrik Karlsson <[email protected]> is credited with the discovery of this issue. |
| Vulnerable: |
Citrix ICA Program Neighborhood Client 9.1 Citrix ICA Program Neighborhood Client 9.0 |
| Not Vulnerable: |
Citrix ICA Program Neighborhood Client 9.150 |
Discussion
Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
The Citrix Program Neighborhood is prone to a stack-based overflow. This issue is due to a failure of the application to properly bounds check user-supplied data prior to copying it to an insufficiently sized memory buffer.
This issue allows remote attackers to execute arbitrary machine code in the context of vulnerable client applications.
In order to exploit this issue, affected clients must connect to a malicious server. Attacks against the DNS infrastructure used by clients, social engineering, or other methods may be employed to achieve this. Alternatively, attackers must have access to a computer in the same LAN as targeted clients.
Versions 9.1 and prior of the Citrix Program Neighborhood client are vulnerable to this issue.
The Citrix Program Neighborhood is prone to a stack-based overflow. This issue is due to a failure of the application to properly bounds check user-supplied data prior to copying it to an insufficiently sized memory buffer.
This issue allows remote attackers to execute arbitrary machine code in the context of vulnerable client applications.
In order to exploit this issue, affected clients must connect to a malicious server. Attacks against the DNS infrastructure used by clients, social engineering, or other methods may be employed to achieve this. Alternatively, attackers must have access to a computer in the same LAN as targeted clients.
Versions 9.1 and prior of the Citrix Program Neighborhood client are vulnerable to this issue.
Exploit / POC
Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory along with a fix for this issue. Please see the referenced advisory for further information.
Version 9.150 or later of Citrix Program Neighborhood may be downloaded from:
http://www.citrix.com/English/SS/downloads/downloads.asp?dID=2755
Solution:
The vendor has released an advisory along with a fix for this issue. Please see the referenced advisory for further information.
Version 9.150 or later of Citrix Program Neighborhood may be downloaded from:
http://www.citrix.com/English/SS/downloads/downloads.asp?dID=2755
References
Citrix Program Neighborhood Application Enumeration Buffer Overflow Vulnerability
References:
References: