CVE-2011-2882: Buffer Overflow
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 before 9.1-96.4 allows remote attackers to execute arbitrary code via crafted HTTP header data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2882?
CVE-2011-2882 has a critical severity rating due to the potential for remote code execution.
How do I fix CVE-2011-2882?
To mitigate CVE-2011-2882, upgrade Citrix Access Gateway to versions 8.1-67.7, 9.0-70.5, or 9.1-96.4 or later.
Who is affected by CVE-2011-2882?
CVE-2011-2882 affects users of Citrix Access Gateway versions 8.1, 9.0, and 9.1 before specified updates.
What is the exploitation method for CVE-2011-2882?
CVE-2011-2882 can be exploited via crafted HTTP header data sent to the affected ActiveX control.
What are the potential impacts of CVE-2011-2882?
The potential impacts of CVE-2011-2882 include arbitrary code execution on the affected system.