CVE-2024-8534

Published Nov 12, 2024

Last updated 3 months ago

Overview

Description
Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled
Source
secure@citrix.com
NVD status
Awaiting Analysis

Risk scores

CVSS 4.0

Type
Secondary
Base score
8.4
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
HIGH

Weaknesses

secure@citrix.com
CWE-119

Social media

Hype score
Not currently trending
  1. 🚨Alert🚨 CVE-2024-8534 : Memory safety vulnerability leading to memory corruption and Denial of Service 🧐Deep Dive from @assetnote: https://t.co/gIxWiBDo7l 📊 342.7K+ Services are found on https://t.co/ysWb28BTvF yearly. 🔗Hunter Link: https://t.co/Ixz5ogWK4N 👇Query HUNTER… ht

    @HunterMapping

    3 Jan 2025

    2580 Impressions

    14 Retweets

    46 Likes

    18 Bookmarks

    2 Replies

    0 Quotes

  2. Top 5 Trending CVEs: 1 - CVE-2024-49112 2 - CVE-2010-5139 3 - CVE-2024-49019 4 - CVE-2024-11944 5 - CVE-2024-8534 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    2 Jan 2025

    42 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. [1day1line] CVE-2024-8534:Citrix NetScaler RDP Proxy DoS https://t.co/XiR9GrYMVm CVE-2024-8534 is a memory corruption vulnerability identified in the RDP Proxy feature of Citrix NetScaler. Improper length validation during RDP request processing could result in memory… https://

    @hackyboiz

    1 Jan 2025

    1248 Impressions

    6 Retweets

    18 Likes

    7 Bookmarks

    0 Replies

    0 Quotes

  4. Top 5 Trending CVEs: 1 - CVE-2024-9121 2 - CVE-2022-20201 3 - CVE-2024-56337 4 - CVE-2024-49775 5 - CVE-2024-8534 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    23 Dec 2024

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Citrix NetScaler に対するブルートフォースの急増:CVE-2024-8534/8535 に注意 https://t.co/pUeABOe48b Citrix NetScaler に対するブルートフォースの急増とのことですが、この記事を読む限りでは、CVE-2024-8534/8535 との関連性が、よく分かりません。とは言え、Citrix NetScaler… https://t.co/CXm9BVpgZJ

    @iototsecnews

    23 Dec 2024

    180 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. Brute-force attacks on Citrix NetScaler flaws (CVE-2024-8534, CVE-2024-8535) are rising! Update and secure your systems to stay protected. Read more: https://t.co/05XvfQpNJy #BruteForceAttacks #CitrixNetScaler #CyberSecurity https://t.co/DOgDNkFFP9

    @CyberPro_M

    19 Dec 2024

    54 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. Citrix Denial of Service: Analysis of CVE-2024-8534 https://t.co/h9rRrXnhDp https://t.co/czY7WXaYkS

    @freedomhack101

    13 Dec 2024

    35 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Analysis de la vulnerabilidad CVE-2024-8534 ➡️ Denegación se servicio en Citrix https://t.co/1jbfyzWfKS https://t.co/ZvPo2Xr2jb

    @elhackernet

    13 Dec 2024

    2032 Impressions

    3 Retweets

    11 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  9. Our security research team dived into CVE-2024-8534, a memory safety vulnerability leading to memory corruption and Denial of Service affecting Citrix NetScaler. Customers of our True Attack Surface Management platform have already rapidly responded: https://t.co/IzoOuhUJ12 http

    @assetnote

    12 Dec 2024

    776 Impressions

    2 Retweets

    16 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. Some security advisories don't get the attention they deserve. Being a True Attack Surface Management solution, @assetnote focuses on the technologies that matter most to our customers. Our research on CVE-2024-8534 (CVSS 8.4) affecting Citrix NetScaler: https://t.co/JHC5uc8FpJ

    @infosec_au

    12 Dec 2024

    3976 Impressions

    17 Retweets

    93 Likes

    15 Bookmarks

    4 Replies

    0 Quotes

  11. On November 12, 2024, Cloud Software Group released builds to fix CVE-2024-8534 and CVE-2024-8535, which affect #NetScalerADC and #NetScalerGateway. For more information and details, read our blog: https://t.co/NWvmSqwy2T

    @NetScaler

    14 Nov 2024

    231 Impressions

    0 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. CVE-2024-8534 Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserve… https://t.co/oILXcoXpZH

    @CVEnew

    12 Nov 2024

    254 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Citrix NetScaler ADCおよびNetScaler Gatewayにおける脆弱性 CVE-2024-8534 メモリの安全性に関する脆弱性であり、メモリ破損やDoSを引き起こす可能性 CVSS 8.4 CVE-2024-8535 認証済みのユーザーが意図しない操作権限を持つ可能性 CVSS 5.8 速やかなアップグレードを推奨します。 https://t.co/cehVqgXwz8

    @t_nihonmatsu

    12 Nov 2024

    301 Impressions

    0 Retweets

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

  14. NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2024-8534 and CVE-2024-8535 https://t.co/XfchQFkJzX

    @autumn_good_35

    12 Nov 2024

    369 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  15. Citrix addresses NetScaler Vulnerabilities CVE-2024-8534 and CVE-2024-8535 #NetScalerADC #Citrix #CVE-2024-8534 #CVE-2024-8535 https://t.co/3ooEjhqG9F

    @pravin_karthik

    12 Nov 2024

    53 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. Check out the latest article in my newsletter: NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2024-8534 and CVE-2024-8535 https://t.co/31sUAXNeWC via @LinkedIn

    @AndrewScott_8

    12 Nov 2024

    140 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes