This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Citrix vuln - update available

3 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

- http://isc.sans.org/diary.html?storyid=2102
Last Updated: 2007-01-25 20:11:50 UTC
"…Citrix users: Time to Patch! Another vulnerability was disclosed that affects the Citrix presentation platform. This is a buffer overflow vulnerability and received the CVE ID of CVE-2007-0444*… affects the Citrix Presentation Server 4.0, Metaframe XP 1.0 and Metaframe Presentation Server 3.0. If sucessfuly exploited, an attacker will be able to run code as System. Exploit for this vulnerability is available, so I really recommend the usual test and patch procedure! Citrix has information** about this vulnerability and the proper measures to take."

* http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-0444
CVSS Severity: 7.0 (High)

** http://support.citrix.com/article/CTX111686
Severity: High

- http://en.wikipedia.org/wiki/Citrix_Presentation_Server

.
FYI…

Citrix client vuln - update available
- http://www.us-cert.gov/current/#citrix
March 2, 2007 ~ "…Unspecified vulnerability in Citrix Presentation Server Client for Windows. The vulnerability exists in the way ICA connections are handled through proxy servers. By persuading a user to access a specially crafted HTML document (e.g., a web page or an HTML email message), a remote, unauthenticated attacker may be able to execute arbitrary code with privileges in the context of the client process. More information about this vulnerability is located in the following…
- http://www.kb.cert.org/vuls/id/798364
(Update:)
- http://support.citrix.com/article/CTX11258…;printable=true …
US-CERT recommends that administrators upgrade to version 10.0 and later to mitigate the security risks."

> http://secunia.com/advisories/24350/
Critical: Highly critical …

.
FYI…

Citrix Access Gateway Multiple Vulns - updates available
- http://secunia.com/advisories/26143/
Last Update: 2007-07-23
Critical: Highly critical
Impact: Cross Site Scripting, Exposure of sensitive information, System access
Where: From remote
Solution Status: Vendor Patch
…This vulnerability is reported in Access Gateway model 2000 appliances with firmware version 4.5.2 and prior. Access Gateway Enterprise Edition is reportedly not affected.
A redirection issue that may facilitate phishing attacks has also been reported.
Solution: Apply hotfix and update firmware to version 4.5.5.
Access Gateway Standard Edition 4.5:
http://support.citrix.com/article/CTX114028
Access Gateway Advanced Edition 4.5:
http://support.citrix.com/article/CTX112803
…The vendor also recommends removing the following components from client devices:
VPN ActiveX components:
* Net6Helper.DLL (Friendly name: Net6Launcher Class, version number up to and including 4.5.2)
EPA Components (ActiveX):
* npCtxCAO.dll (Friendly name: CCAOControl Object, version number up to 4,5,0,0)
EPA Components (Firefox plugin):
* npCtxCAO.dll (Friendly name: Citrix Endpoint Analysis Client, present in two locations)
Symantec:
http://www.symantec.com/content/en/us/ente…SA-2007-006.txt …"

> http://support.citrix.com/article/CTX113815
————————————————-

- http://atlas.arbor.net/briefs/index#-749738110
"…This is a major set of vulnerabilities that can affect an entire enterprise using Citrix Access Gateway, both client-side and on the server. All sites using this software should review these updates and schedule them for immediate implementation."

.
FYI…

Citrix vuln - update available
- http://secunia.com/advisories/28508/
Last Update: 2008-01-18
Critical: Moderately critical
Impact: System access
Where: From local network
Solution Status: Vendor Patch
Software: Citrix Access Essentials 1.x, Citrix Access Essentials 2.x, Citrix Desktop Server 1.x. Citrix MetaFrame Presentation Server 3.x, Citrix Presentation Server 4.x
…Successful exploitation allows execution of arbitrary code.
Solution: Apply hotfix (see vendor advisory for details).
Original Advisory: CTX114487:
http://support.citrix.com/article/CTX114487
Jan 15, 2008 - "…A hotfix has been released to address both of these issues. Citrix recommends that affected customers install the hotfix…"

- http://isc.sans.org/diary.html?storyid=3862
Last Updated: 2008-01-18 08:22:17 UTC

- http://www.zerodayinitiative.com/advisories/ZDI-08-002.html
January 17, 2008

Also see: http://secunia.com/advisories/28472/

- http://atlas.arbor.net/briefs/index#-1093193157
January 17, 2008 - "…Analysis: The exploit might cause a local denial of service. We could not successfully test this exploit. Users are recommended to upgrade to the latest release of Cisco VPN Client… "

:ph34r:
FYI…

Citrix Access Gateway - DNS Cache Poisoning
- http://secunia.com/advisories/31594/
Release Date: 2008-09-03
Critical: Moderately critical
Impact: Spoofing
Where: From remote
Solution Status: Vendor Patch
OS: Citrix Access Gateway 4.x …
Solution: Firmware versions 4.5 and later: Apply firmware hotfix.
http://support.citrix.com/article/CTX116762
Firmware versions -prior- to 4.5: The vendor recommends to contact the customer support representative for assistance…
Original Advisory: http://support.citrix.com/article/CTX118183
Sep 2, 2008

:ph34r: