S-125: Citrix Presentation Server IMA Vulnerability


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) S-125: Citrix Presentation Server IMA Vulnerability
# 1  
Old 01-23-2008
S-125: Citrix Presentation Server IMA Vulnerability

Citrix Presentation Server is prone to a buffer-overflow vulnerability because the IMA service fails to properly bounds-check user-supplied input before cpoying it to an insufficent sized memory buffer. The risk is HIGH. Successfully exploiting this issue may allow attackers to execute arbitrary machine code in the context of the IMA server process. The userid context that is compromised is SYSTEM. A remote, unathenticated, attacker could cause root-level compromise.Failed exploit attempts will likely result in denial-of-service conditions.


More...
Login or Register to Ask a Question

Previous Thread | Next Thread

3 More Discussions You Might Find Interesting

1. Ubuntu

Vmware Citrix Xenn virtualization on dedicated server

hi, I am newbie and I think I am trying to bit off more than I could chew in this field. I would like to know if virtualization with Vmware Citrix on a dedicated server under ubuntu 64bit is simple. I looked up in the board with keyword "virtualization, vmware, dedicated" but replied threads are... (2 Replies)
Discussion started by: baris35
2 Replies

2. Solaris

How to install citrix metaframe server in Solairs 9 and 10,

How to install citrix metaframe server in Solairs 9 and 10, Plese help me if anybody having instllation procedure. your help greatly appreciated. Thanks & Regards Durgaprasad (0 Replies)
Discussion started by: durgaprasadr13
0 Replies

3. Shell Programming and Scripting

#? 0,1,2,,,,,,,125 ?

The return value of the #? returns status of the executed command, i.e If it is 0 then SUCCESS, If it is non-zero value the it means FAILURE. My doubt is how does the return status defined? 1,2,3,,,,,125. Exp: if it returns 125,, how does it relates to failure? (1 Reply)
Discussion started by: praveen_b744
1 Replies
Login or Register to Ask a Question
Mojo::Server::CGI(3pm)					User Contributed Perl Documentation				    Mojo::Server::CGI(3pm)

NAME
Mojo::Server::CGI - CGI server SYNOPSIS
use Mojo::Server::CGI; my $cgi = Mojo::Server::CGI->new; $cgi->unsubscribe('request') $cgi->on(request => sub { my ($cgi, $tx) = @_; # Request my $method = $tx->req->method; my $path = $tx->req->url->path; # Response $tx->res->code(200); $tx->res->headers->content_type('text/plain'); $tx->res->body("$method request for $path!"); # Resume transaction $tx->resume; }); $cgi->run; DESCRIPTION
Mojo::Server::CGI is a simple and portable implementation of RFC 3875. See Mojolicious::Guides::Cookbook for more. EVENTS
Mojo::Server::CGI inherits all events from Mojo::Server. ATTRIBUTES
Mojo::Server::CGI inherits all attributes from Mojo::Server and implements the following new ones. "nph" my $nph = $cgi->nph; $cgi = $cgi->nph(1); Activate non parsed header mode. METHODS
Mojo::Server::CGI inherits all methods from Mojo::Server and implements the following new ones. "run" $cgi->run; Run CGI. SEE ALSO
Mojolicious, Mojolicious::Guides, <http://mojolicio.us>. perl v5.14.2 2012-09-05 Mojo::Server::CGI(3pm)