Fortinet Releases Multiple Security Advisories
The security advisories address a critical vulnerability in FortiClientLinux, a high vulnerability in FortiClientMac, and a high vulnerability in FortiOS and FortiProxy.
Summary
The security advisories address a critical vulnerability in FortiClientLinux, a high vulnerability in FortiClientMac, and a high vulnerability in FortiOS and FortiProxy.
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
Fortinet has released security advisories to address multiple vulnerabilities.
The security advisories address one critical vulnerability in FortiClientLinux, one high vulnerability in FortiClientMac, and one high vulnerability in the SSL-VPN component of FortiOS and FortiProxy. FortiClient, FortiOS, and FortiProxy all provide a virtual private network solution.
Vulnerability details
- CVE-2023-45590 - CWE-94 - Code Injection
CVE-2023-45590 is an improper control of generation of code vulnerability in FortiClientLinux with a CVSSv3 score of 9.4. An unauthenticated attacker could exploit this vulnerability to execute arbitrary code.
- CVE-2023-45588 & CVE-2024-31492 - CWE-73 - External Control of File Name or Path
CVE-2023-45588 and CVE-2024-31492 are external control of file name or path vulnerabilities in FortiClientMac's installer with a CVSSv3 score of 7.8. A local attacker could exploit these vulnerabilities to execute arbitrary code by writing a malicious configuration file in the /tmp directory before starting the installation process.
- CVE-2023-41677 - CWE-522 - Insufficiently Protected Credentials
CVE-2023-41677 is an insufficiently protected credentials vulnerability in the SSL-VPN component of FortiOS and FortiProxy with a CVSSv3 score of 7.5. A remote unauthenticated attacker could exploit this vulnerability to obtain the administrator cookie if a malicious link is clicked.
Remediation advice
Affected organisations are encouraged to review the following Fortinet Security Advisories below and apply the relevant updates.
Remediation steps
| Type | Step |
|---|---|
| Patch |
FortiClientLinux - Remote Code Execution due to dangerous nodejs configuration (Critical) https://fortiguard.fortinet.com/psirt/FG-IR-23-087 |
| Patch |
FortiClientMac - Lack of configuration file validation (High) https://fortiguard.fortinet.com/psirt/FG-IR-23-345 |
| Patch |
FortiOS & FortiProxy - administrator cookie leakage (High) https://www.fortiguard.com/psirt/FG-IR-23-493 |
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 10 April 2024 1:25 pm