Out-of-Bounds Write Vulnerability in Fortinet FortiOS Affects Multiple Versions
CVE-2024-52963

3.5LOW

Key Information:

Vendor

Fortinet

Vendor
CVE Published:
14 January 2025

What is CVE-2024-52963?

An out-of-bounds write vulnerability present in multiple versions of Fortinet's FortiOS allows attackers to launch denial of service (DoS) attacks. This issue arises when the system mishandles specially crafted packets, leading to potential disruption of service. Organizations utilizing affected versions should prioritize applying patches to mitigate this risk and ensure the security of their networks.

Affected Version(s)

FortiOS 7.6.0

FortiOS 7.4.0 <= 7.4.6

FortiOS 7.2.0 <= 7.2.10

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.