Executive brief
Citrix NetScaler ADC and NetScaler Gateway are critical infrastructure appliances used to manage and secure network traffic in enterprise environments. A buffer overflow vulnerability in these products allows attackers to crash the affected systems, causing widespread network outages and service disruption across dependent applications and users. This vulnerability has been actively exploited in the wild, making remediation urgent.
Technical details
The vulnerability is a classic buffer overflow (improper restriction of operations within memory buffer bounds) affecting Citrix NetScaler ADC and NetScaler Gateway. The root cause involves insufficient bounds checking in a core component that processes network operations. The attack vector is network-based, allowing remote exploitation without authentication. Attackers can craft malicious network requests to trigger the overflow condition, causing denial of service through application crash. The vulnerability has been observed in active exploitation campaigns. Citrix has released patches; users should prioritize immediate deployment.
Affected products
- Citrix NetScaler ADC
- Citrix NetScaler Gateway
Timeline
- 2026-08-26: disclosed
- exploited: Actively exploited in the wild