A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-095 |
|
History
Tue, 22 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published: 2023-06-13T08:41:48.959Z
Updated: 2024-10-22T20:45:18.608Z
Reserved: 2023-04-03T08:47:30.452Z
Link: CVE-2023-29178
Updated: 2024-08-02T14:00:15.896Z
Status : Modified
Published: 2023-06-13T09:15:17.077
Modified: 2024-11-21T07:56:39.910
Link: CVE-2023-29178
No data.