CVE-2017-7219: Buffer Overflow
A heap overflow vulnerability in Citrix NetScaler Gateway versions 10.1 before 135.8/135.12, 10.5 before 65.11, 11.0 before 70.12, and 11.1 before 52.13 allows a remote authenticated attacker to run arbitrary commands via unspecified vectors.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Citrix NetScaler Gatewayto a version that resolves this vulnerability.Fixed in 10.1 before 135.8/135.12Patch 135.8/135.12 - Upgrade
Upgrade
Citrix NetScaler Gatewayto a version that resolves this vulnerability.Fixed in 10.5 before 65.11Patch 65.11 - Upgrade
Upgrade
Citrix NetScaler Gatewayto a version that resolves this vulnerability.Fixed in 11.0 before 70.12Patch 70.12 - Upgrade
Upgrade
Citrix NetScaler Gatewayto a version that resolves this vulnerability.Fixed in 11.1 before 52.13Patch 52.13
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7219?
CVE-2017-7219 is rated as a medium severity vulnerability due to the potential for remote exploitation leading to command execution.
How do I fix CVE-2017-7219?
To mitigate CVE-2017-7219, you should upgrade to Citrix NetScaler Gateway versions 10.1.135.8 or 10.5.65.11, 11.0.70.12, or 11.1.52.13 or later.
What are the affected versions for CVE-2017-7219?
CVE-2017-7219 affects Citrix NetScaler Gateway versions 10.1 before 135.8, 10.5 before 65.11, 11.0 before 70.12, and 11.1 before 52.13.
Can CVE-2017-7219 be exploited remotely?
Yes, CVE-2017-7219 can be exploited by a remote authenticated attacker.
What type of vulnerability is CVE-2017-7219?
CVE-2017-7219 is classified as a heap overflow vulnerability.