CVE-2006-5861Citrix Metaframe vulnerability

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
7.1%
top 8.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 10
Latest updateMay 1

Description

The Independent Management Architecture (IMA) service (ImaSrv.exe) in Citrix MetaFrame XP 1.0 and 2.0, and Presentation Server 3.0 and 4.0, allows remote attackers to cause a denial of service (service exit) via a crafted packet that causes the service to access an unmapped memory address and triggers an unhandled exception.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages9 packages

Patches

🔴Vulnerability Details

1
GHSA
GHSA-wfw3-5vj5-32f2: The Independent Management Architecture (IMA) service (ImaSrv2022-05-01

📋Vendor Advisories

1
Citrix
Citrix Security Bulletin CTX111186