First published: Tue Mar 01 2022(Updated: )
A improper input validation in Fortinet FortiGate version 6.4.3 and below, version 6.2.5 and below, version 6.0.11 and below, version 5.6.13 and below allows attacker to disclose sensitive information via SNI Client Hello TLS packets.
Credit: psirt@fortinet.com
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiOS | >=5.6.0<=5.6.13 | |
Fortinet FortiOS | >=6.0.0<=6.0.11 | |
Fortinet FortiOS | >=6.2.0<=6.2.5 | |
Fortinet FortiOS | >=6.4.0<=6.4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.