HIGH · 10.0

CVE-2008-0356

Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop S...

Vulnerability Description

Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop Server 1.0 allows remote attackers to execute arbitrary code via an invalid size value in a packet to TCP port 2512 or 2513.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CitrixAccess Essentials<= 2.0
CitrixDesktop Server1.0
CitrixMetaframe Presentation Server<= 4.5
CitrixPresentation ServerAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-0356?

CVE-2008-0356 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop S...

How severe is CVE-2008-0356?

CVE-2008-0356 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-0356?

Check the references section above for vendor advisories and patch information. Affected products include: Citrix Access Essentials, Citrix Desktop Server, Citrix Metaframe Presentation Server, Citrix Presentation Server.