Out-of-bounds Write in sndproxy

Summary

An out-of-bounds write vulnerability [CWE-787] in FortiManager and FortiAnalyzer sndproxy daemon may allow an authenticated attacker to execute arbitrary code or commands via specially crafted HTTP requests.

Version Affected Solution
FortiAnalyzer 7.6 Not affected Not Applicable
FortiAnalyzer 7.4 7.4.0 through 7.4.3 Upgrade to 7.4.4 or above
FortiAnalyzer 7.2 Not affected Not Applicable
FortiAnalyzer 7.0 Not affected Not Applicable
FortiAnalyzer Cloud 7.4 7.4.1 through 7.4.2 Upgrade to 7.4.3 or above
FortiManager Cloud 7.4 7.4.1 through 7.4.2 Upgrade to 7.4.3 or above
FortiManager 7.6 Not affected Not Applicable
FortiManager 7.4 7.4.0 through 7.4.2 Upgrade to 7.4.3 or above
FortiManager 7.2 Not affected Not Applicable
FortiManager 7.0 Not affected Not Applicable

Acknowledgement

Internally discovered and reported by Gwendal Guégniaud of Fortinet Product Security Team.

Timeline

2025-01-14: Initial publication