A buffer underwrite vulnerability in the firmware verification routine of FortiOS before 7.0.1 may allow an attacker located in the adjacent network to potentially execute arbitrary code via a specifically crafted firmware image.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://fortiguard.com/advisory/FG-IR-21-046 | vendor advisory |