CVE-2025-22258: Heap buffer overflow in websocket
A heap-based buffer overflow in Fortinet FortiSRA 1.5.0, 1.4.0 through 1.4.2, FortiPAM 1.5.0, 1.4.0 through 1.4.2, 1.3.0 through 1.3.1, 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiProxy 7.6.0 through 7.6.1, 7.4.0 through 7.4.7, FortiOS 7.6.0 through 7.6.2, 7.4.0 through 7.4.6, 7.2.0 through 7.2.10, 7.0.2 through 7.0.16, FortiSwitchManager 7.2.1 through 7.2.5 allows attackers to escalate their privilege via specially crafted http requests.
Other sources
An heap-based buffer overflow vulnerability [CWE-122] in FortiOS, FortiProxy, FortiPAM, FortiSRA and FortiSwitchManager nodejs daemon may allow an authenticated attacker to execute arbitrary code or commands via specifically crafted requests.
— FortiGuard
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22258?
CVE-2025-22258 is classified as a high severity vulnerability due to the potential for a heap-based buffer overflow.
How do I fix CVE-2025-22258?
To mitigate CVE-2025-22258, users should update to the latest patched versions of Fortinet products.
Which products are affected by CVE-2025-22258?
CVE-2025-22258 affects multiple versions of FortiSRA, FortiPAM, FortiProxy, and FortiOS.
Can CVE-2025-22258 lead to remote code execution?
Yes, due to the nature of the buffer overflow, CVE-2025-22258 can potentially allow an attacker to execute arbitrary code remotely.
Is there a workaround for CVE-2025-22258 before applying a patch?
Currently, it is recommended to apply the patch for CVE-2025-22258 as there are no official workarounds provided by Fortinet.