Real-time file system integrity checking write protection bypass

Summary

An improper access control vulnerability [CWE-284] in FortiOS may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.

Version Affected Solution
FortiOS 7.6 Not affected Not Applicable
FortiOS 7.4 7.4.0 through 7.4.3 Upgrade to 7.4.4 or above
FortiOS 7.2 7.2.5 through 7.2.7 Upgrade to 7.2.8 or above
FortiOS 7.0 7.0.12 through 7.0.14 Upgrade to 7.0.15 or above
FortiOS 6.4 6.4.13 through 6.4.16 Migrate to a fixed release
Follow the recommended upgrade path using our tool at: https://docs.fortinet.com/upgrade-tool

Acknowledgement

Internally discovered and reported by Wilfried Djettchou of Fortinet Product Security team.

Timeline

2024-08-13: Initial publication