CVE-2006-5821

Heap-based buffer overflow in the IMA_SECURE_DecryptData1 function in ImaSystem.dll for Citrix MetaFrame XP 1.0 and 2.0, and Presentation Server 3.0 and 4.0, allows remote attackers to execute arbitrary code via requests to the Independent Management Architecture (IMA) service (ImaSrv.exe) with invalid size values that trigger the overflow during decryption.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:citrix:metaframe:1.0:*:windows_2000:*:*:*:*:*
cpe:2.3:a:citrix:metaframe:3.0:*:microsoft_windows_2000:*:*:*:*:*
cpe:2.3:a:citrix:metaframe_presentation_server:4.0:*:64-bit:*:*:*:*:*
cpe:2.3:a:citrix:metaframe_presentation_server:4.0:*:microsoft_windows_2000:*:*:*:*:*
cpe:2.3:a:citrix:metaframe_presentation_server:4.0:*:microsoft_windows_2003:*:*:*:*:*

History

21 Nov 2024, 00:20

Type Values Removed Values Added
References () http://secunia.com/advisories/22802 - () http://secunia.com/advisories/22802 -
References () http://securitytracker.com/id?1017205 - () http://securitytracker.com/id?1017205 -
References () http://support.citrix.com/article/CTX111186 - Patch () http://support.citrix.com/article/CTX111186 - Patch
References () http://www.securityfocus.com/archive/1/451337/100/100/threaded - () http://www.securityfocus.com/archive/1/451337/100/100/threaded -
References () http://www.securityfocus.com/bid/20986 - () http://www.securityfocus.com/bid/20986 -
References () http://www.vupen.com/english/advisories/2006/4429 - () http://www.vupen.com/english/advisories/2006/4429 -
References () http://www.zerodayinitiative.com/advisories/ZDI-06-038.html - () http://www.zerodayinitiative.com/advisories/ZDI-06-038.html -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/30148 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/30148 -

Information

Published : 2006-11-10 23:07

Updated : 2024-11-21 00:20


NVD link : CVE-2006-5821

Mitre link : CVE-2006-5821

CVE.ORG link : CVE-2006-5821


JSON object : View

Products Affected

citrix

  • metaframe
  • metaframe_presentation_server