First published: Thu Aug 06 2020(Updated: )
Denial-of-Service (DoS) in Ivanti Service Manager HEAT Remote Control 7.4 due to a buffer overflow in the protocol parser of the ‘HEATRemoteService’ agent. The DoS can be triggered by sending a specially crafted network packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti Desktop\&server Management | <2020.1 | |
Ivanti Service Manager HEAT Remote Control | =7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12441 has been classified as a high severity Denial-of-Service vulnerability.
CVE-2020-12441 affects Ivanti Service Manager HEAT Remote Control 7.4 by causing a DoS through a buffer overflow when a specially crafted network packet is received.
Mitigation for CVE-2020-12441 involves upgrading to the latest version of Ivanti Service Manager HEAT Remote Control that addresses the buffer overflow vulnerability.
Ivanti Service Manager HEAT Remote Control version 7.4 and Ivanti Desktop & Server Management versions prior to 2020.1 are affected by CVE-2020-12441.
Exploiting CVE-2020-12441 allows an attacker to crash the service, resulting in a denial of service for legitimate users.