Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
BID:42150
Info
Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
| Bugtraq ID: | 42150 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 02 2010 12:00AM |
| Updated: | Aug 04 2010 03:45PM |
| Credit: | Michael Jordon |
| Vulnerable: |
Citrix Online Plug-in for Windows 11.1 Citrix Online Plug-in for Mac 10.0 Citrix ICA Client for Linux 11.000 |
| Not Vulnerable: |
Citrix Online Plug-in for Windows 11.2 Citrix Online Plug-in for Mac 11.0 Citrix ICA Client for Linux 11.100 |
Discussion
Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
Citrix Online Plug-In and ICA Client are prone to a remote code-execution vulnerability because the applications fail to properly bounds-check user-supplied data.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
The following products are vulnerable:
Citrix Online Plug-in for XenApp & XenDesktop for Windows prior to version 11.2
Citrix Online Plug-in for XenApp & XenDesktop for Mac prior to version 11.0
Citrix ICA Client for Linux (x86 and ARM) prior to version 11.100
Citrix ICA Client for Solaris (x86 and Sparc) prior to version 8.63
Citrix Receiver for Windows Mobile prior to version 11.5
Citrix Online Plug-In and ICA Client are prone to a remote code-execution vulnerability because the applications fail to properly bounds-check user-supplied data.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
The following products are vulnerable:
Citrix Online Plug-in for XenApp & XenDesktop for Windows prior to version 11.2
Citrix Online Plug-in for XenApp & XenDesktop for Mac prior to version 11.0
Citrix ICA Client for Linux (x86 and ARM) prior to version 11.100
Citrix ICA Client for Solaris (x86 and Sparc) prior to version 8.63
Citrix Receiver for Windows Mobile prior to version 11.5
Exploit / POC
Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Citrix Online Plug-In and ICA Client Heap Overflow Remote Code Execution Vulnerability
References:
References:
- Citrix Homepage (Citrix)
- Vulnerability in Citrix Online Plug-Ins and ICA Clients could result in arbitrar (Citrix)
- Heap Offset Overflow in Citrix ICA Clients (Context IS - Disclosure
)