CVE-2015-5735: High severity fortinet forticlient virtual private network vulnerability
Published Sep 3, 2015
·Updated
The (1) mdare6448.sys, (2) mdare3248.sys, (3) mdare3252.sys, and (4) mdare6452.sys drivers in Fortinet FortiClient before 5.2.4 allow local users to write to arbitrary memory locations via a 0x226108 ioctl call.
Affected Software
1 affected component
Fortinet Forticlient<=5.2.3
Event History
Sep 3, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5735?
CVE-2015-5735 is considered to have a medium severity due to its ability to allow local users to write to arbitrary memory locations.
2
How do I fix CVE-2015-5735?
To mitigate CVE-2015-5735, upgrade Fortinet FortiClient to version 5.2.4 or later.
3
Which versions of FortiClient are affected by CVE-2015-5735?
Versions of FortiClient prior to 5.2.4 are affected by CVE-2015-5735.
4
What is the impact of exploiting CVE-2015-5735?
Exploiting CVE-2015-5735 could allow a local user to execute arbitrary code with elevated privileges.
5
Are there specific drivers associated with CVE-2015-5735?
Yes, the drivers mdare64_48.sys, mdare32_48.sys, mdare32_52.sys, and mdare64_52.sys are associated with CVE-2015-5735.