Buffer Overflow Vulnerability in Fortinet FortiOS TFTP Client Library
CVE-2021-42757
Key Information:
- Vendor
Fortinet
- Vendor
- CVE Published:
- 8 December 2021
What is CVE-2021-42757?
A vulnerable buffer overflow in the TFTP client library of Fortinet's FortiOS allows an authenticated local attacker to execute arbitrary code. This vulnerability affects versions prior to 6.4.7 and versions from 7.0.0 to 7.0.2. Attackers can exploit this issue by sending specially crafted command line arguments, potentially compromising system integrity and leading to unauthorized access. It is critical for users of the affected FortiOS versions to update to the latest releases and implement necessary security measures.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FortiADC 6.2.0 <= 6.2.2
FortiADC 6.1.0 <= 6.1.5
FortiADC 6.0.0 <= 6.0.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved