CVE-2025-5777: Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability
Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.
Other sources
Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5777?
CVE-2025-5777 has been classified with a critical severity due to the potential for memory overread.
How do I fix CVE-2025-5777?
To remediate CVE-2025-5777, you should apply the latest security patches provided by Citrix for NetScaler ADC and NetScaler Gateway.
Which versions of NetScaler are affected by CVE-2025-5777?
CVE-2025-5777 affects certain configurations of Citrix NetScaler ADC and Citrix NetScaler Gateway, although specific version numbers are not detailed.
What are the risks associated with CVE-2025-5777?
The risks of CVE-2025-5777 involve potential exposure of sensitive information due to insufficient input validation leading to memory overread.
Is there a workaround for CVE-2025-5777?
As of now, Citrix recommends applying the relevant updates as there are no known valid workarounds for CVE-2025-5777.