Summary:
Fortinet has disclosed a critical vulnerability, CVE-2023-33308, affecting FortiOS and FortiProxy. This flaw allows remote attackers to execute arbitrary code on vulnerable devices. It has been rated as "critical" with a CVSS v3 score of 9.8 out of 10. The vulnerability arises from a stack-based overflow issue, where a program writes more data to a buffer than it can hold, leading to the overflow of adjacent memory. The impacted versions include FortiOS 7.2.0 to 7.2.3, FortiOS 7.0.0 to 7.0.10, FortiProxy 7.2.0 to 7.2.2, and FortiProxy 7.0.0 to 7.0.9. Users are advised to update their software or disable HTTP/2 support as a temporary workaround. Additionally, another vulnerability (CVE-2023-27997) has highlighted the issue of patch lag, as many vulnerable FortiGate firewalls were found exposed on the internet even after a fix had been made available. It is crucial for Fortinet users to ensure they are running a safe version of the software and apply security updates promptly. The other vulnerability, tracked as CVE-2023-28001, is of medium severity and allows an attacker to reuse a deleted user's session. It affects FortiOS versions 7.2.x and 7.0.x and has been addressed in FortiOS version 7.4.0.[/subscribe_to_unlock_form]
Summary:
Fortinet has disclosed a critical vulnerability, CVE-2023-33308, affecting FortiOS and FortiProxy. This flaw allows remote attackers to execute arbitrary code on vulnerable devices. It has been rated as "critical" with a CVSS v3 score of 9.8 out of 10. The vulnerability arises from a stack-based overflow issue, where a program writes more data to a buffer than it can hold, leading to the overflow of adjacent memory. The impacted versions include FortiOS 7.2.0 to 7.2.3, FortiOS 7.0.0 to 7.0.10, FortiProxy 7.2.0 to 7.2.2, and FortiProxy 7.0.0 to 7.0.9. Users are advised to update their software or disable HTTP/2 support as a temporary workaround. Additionally, another vulnerability (CVE-2023-27997) has highlighted the issue of patch lag, as many vulnerable FortiGate firewalls were found exposed on the internet even after a fix had been made available. It is crucial for Fortinet users to ensure they are running a safe version of the software and apply security updates promptly. The other vulnerability, tracked as CVE-2023-28001, is of medium severity and allows an attacker to reuse a deleted user's session. It affects FortiOS versions 7.2.x and 7.0.x and has been addressed in FortiOS version 7.4.0.[emaillocker id="1283"]
Recommendations:
We strongly recommend you upgrade the following fixed versions of Fortinet Products.
References:
The following reports contain further technical details:
[/emaillocker]