CVE-2020-12441: Buffer Overflow
Denial-of-Service (DoS) in Ivanti Service Manager HEAT Remote Control 7.4 due to a buffer overflow in the protocol parser of the ‘HEATRemoteService’ agent. The DoS can be triggered by sending a specially crafted network packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-12441?
CVE-2020-12441 has been classified as a high severity Denial-of-Service vulnerability.
How does CVE-2020-12441 affect Ivanti Service Manager HEAT Remote Control?
CVE-2020-12441 affects Ivanti Service Manager HEAT Remote Control 7.4 by causing a DoS through a buffer overflow when a specially crafted network packet is received.
How do I mitigate CVE-2020-12441?
Mitigation for CVE-2020-12441 involves upgrading to the latest version of Ivanti Service Manager HEAT Remote Control that addresses the buffer overflow vulnerability.
What specific versions are affected by CVE-2020-12441?
Ivanti Service Manager HEAT Remote Control version 7.4 and Ivanti Desktop & Server Management versions prior to 2020.1 are affected by CVE-2020-12441.
What is the impact of exploiting CVE-2020-12441?
Exploiting CVE-2020-12441 allows an attacker to crash the service, resulting in a denial of service for legitimate users.