Out of bounds read in ipsec ike

Summary

An Out-of-bounds Read vulnerability [CWE-125] in FortiOS and FortiSASE FortiOS tenant IPsec IKE service may allow an unauthenticated remote attacker to trigger memory consumption leading to Denial of Service via crafted requests.

Version Affected Solution
FortiOS 7.6 7.6.0 Upgrade to 7.6.1 or above
FortiOS 7.4 7.4.0 through 7.4.4 Upgrade to 7.4.5 or above
FortiOS 7.2 7.2.0 through 7.2.9 Upgrade to 7.2.10 or above
FortiOS 7.0 Not affected Not Applicable
FortiOS 6.4 Not affected Not Applicable
Follow the recommended upgrade path using our tool at: https://docs.fortinet.com/upgrade-tool

Fortinet in Q4/24 has remediated this issue in FortiSASE version 24.3.c and hence the customers need not perform any action.

Virtual Patch named "FG-VD-10007169.0day." is available in FMWP db update 24.111

Acknowledgement

Fortinet is pleased to thank n3k & Yue Liu from TIANGONG Team of Legendsec at QI-ANXIN Group for reporting this vulnerability under responsible disclosure.

Timeline

2025-01-14: Initial publication
2025-01-15: Added IPS package info