Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.803000
Kategorie:Buffer overflow
Titel:Citrix Provisioning Services SoapServer Buffer Overflow Vulnerability
Zusammenfassung:This host is installed with Citrix Provisioning Services and is; prone to buffer overflow vulnerability.
Beschreibung:Summary:
This host is installed with Citrix Provisioning Services and is
prone to buffer overflow vulnerability.

Vulnerability Insight:
The SoapServer service improperly calculates a buffer index pointer value
for a date and time string, which references a location outside the fixed
sized heap buffer resulting in a heap buffer overflow.

Vulnerability Impact:
Successful exploitation could allow remote attackers to execute arbitrary
code on the target system.

Affected Software/OS:
Citrix Provisioning Services version 5.6 and prior, 6.0 and 6.1

Solution:
Apply the hotfix for Citrix Provisioning Services from the referenced advisory.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: BugTraq ID: 53330
Common Vulnerability Exposure (CVE) ID: CVE-2012-4068
http://www.verisigninc.com/en_US/products-and-services/network-intelligence-availability/idefense/public-vulnerability-reports/articles/index.xhtml?id=979
http://osvdb.org/81664
http://www.securitytracker.com/id?1027004
XForce ISS Database: citrix-provisioning-server-code-execution(75311)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75311
CopyrightCopyright (c) 2012 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.