QID 43940

Date Published: 2022-11-02

QID 43940: FortiOS - Buffer Overflow Vulnerability in TFTP Client library of CLI (FG-IR-21-173)

A buffer overflow [CWE-121] in the TFTP client library of FortiOS may allow an authenticated local attacker to achieve arbitrary code execution via specially crafted command line arguments.

Affected Products:
FortiOS versions 6.0.13 and below
FortiOS versions 6.2.9 and below
FortiOS versions 6.4.7 and below
FortiOS versions 7.0.2 and below

QID Detection Logic (Authenticated):
Detection checks for vulnerable version of FortiOS.

Vulnerable version may allow an authenticated local attacker to achieve arbitrary code execution via specifically crafted command line arguments.

  • CVSS V3 rated as High - 6.7 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution

    Vendor has released fixes to address this vulnerability
    For more details refer advisory FG-IR-21-173

    Vendor References

    CVEs related to QID 43940

    Software Advisories
    Advisory ID Software Component Link
    FG-IR-21-173 URL Logo www.fortiguard.com/psirt/FG-IR-21-173