CVE-2008-0779: High severity fortinet forticlient vulnerability
The fortimon.sys device driver in Fortinet FortiClient Host Security 3.0 MR5 Patch 3 and earlier does not properly initialize its DeviceExtension, which allows local users to access kernel memory and execute arbitrary code via a crafted request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0779?
CVE-2008-0779 is classified as a high severity vulnerability due to its potential to allow local users to execute arbitrary code.
How do I fix CVE-2008-0779?
To fix CVE-2008-0779, users should upgrade to a patched version of Fortinet FortiClient Host Security beyond 3.0 MR5 Patch 3.
What kind of attack can exploit CVE-2008-0779?
CVE-2008-0779 can be exploited by local users to gain unauthorized access to kernel memory and execute arbitrary code.
Which versions of Fortinet FortiClient are affected by CVE-2008-0779?
CVE-2008-0779 affects Fortinet FortiClient Host Security versions up to and including 3.0 MR5 Patch 3.
Who is impacted by CVE-2008-0779?
Local users of the affected versions of Fortinet FortiClient Host Security are directly impacted by CVE-2008-0779.