First published: Thu Feb 24 2022(Updated: )
A wgagent stack-based buffer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WatchGuard Fireware | >=12.0.0<12.1.3 | |
WatchGuard Fireware | >=12.2.0<12.5.9 | |
WatchGuard Fireware | >=12.7.0<12.7.2 | |
WatchGuard Fireware | =12.1.3 | |
WatchGuard Fireware | =12.1.3-u1 | |
WatchGuard Fireware | =12.1.3-u2 | |
WatchGuard Fireware | =12.1.3-u3 | |
WatchGuard Fireware | =12.1.3-u4 | |
WatchGuard Fireware | =12.1.3-u5 | |
WatchGuard Fireware | =12.1.3-u6 | |
WatchGuard Fireware | =12.1.3-u7 | |
WatchGuard Fireware | =12.5.9 | |
WatchGuard Fireware | =12.5.9-u1 | |
WatchGuard Fireware | =12.7.2 | |
WatchGuard Fireware | =12.7.2-u1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25292 is a vulnerability in WatchGuard Firebox and XTM appliances that allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image.
CVE-2022-25292 impacts Fireware OS versions before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.1.3-u1 through 12.1.3-u7, 12.5.9 and 12.5.9-u1, and 12.7.0 through 12.7.2-u1.
CVE-2022-25292 has a severity score of 8.8 (high).
To fix the CVE-2022-25292 vulnerability, users should update their Fireware OS to version 12.7.2_U2 or later.
More information about CVE-2022-25292 can be found at the MITRE CWE database and the WatchGuard Fireware release notes.