QID 43915
Date Published: 2022-10-17
QID 43915: FortiOS Integer Overflow Vulnerability in Secure Sockets Layer (SSL) Virtual Private Network (VPN) (SSLVPN) Allocator (FG-IR-21-049)
An integer overflow or wraparound vulnerability [CWE-190] in FortiOS SSLVPN memory allocator may allow an unauthenticated attacker to corrupt control data on the heap via specifically crafted requests to SSLVPN, resulting in potentially arbitrary code execution.
Affected Products:
Only when SSLVPN is enabled:
FortiOS version 7.0.0 and below
FortiOS version 6.4.5 and below
FortiOS version 6.2.9 and below
FortiOS version 6.0.12 and below
QID Detection Logic (Authenticated):
Detection checks for vulnerable version of FortiOS.
Note: Detection is made potential because, the signature doesn't check if SSLVPN is enabled on the host.
Vulnerable version of FortiOS may allow an unauthenticated attacker to corrupt control data on the heap via specifically crafted requests to SSLVPN, resulting in potentially arbitrary code execution.
Vendor has released fixes to address this vulnerability
For more details refer advisory FG-IR-21-049
- FG-IR-21-049 -
www.fortiguard.com/psirt/FG-IR-21-049
CVEs related to QID 43915
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| FG-IR-21-049 |
|