First published: Thu Sep 03 2015(Updated: )
The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient before 5.2.4 allow local users to write to arbitrary memory locations via a 0x226108 ioctl call.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiClient Virtual Private Network | <=5.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5735 is considered to have a medium severity due to its ability to allow local users to write to arbitrary memory locations.
To mitigate CVE-2015-5735, upgrade Fortinet FortiClient to version 5.2.4 or later.
Versions of FortiClient prior to 5.2.4 are affected by CVE-2015-5735.
Exploiting CVE-2015-5735 could allow a local user to execute arbitrary code with elevated privileges.
Yes, the drivers mdare64_48.sys, mdare32_48.sys, mdare32_52.sys, and mdare64_52.sys are associated with CVE-2015-5735.