FG-IR-21-155: Integer overflow in dhcpd daemon
An integer overflow / wraparound vulnerability [CWE-190] in the FortiOS, FortiProxy, FortiSwitch, FortiRecoder, and FortiVoiceEnterprisedhcpd daemon may allow an unauthenticated and network adjacent attacker to crash the dhcpd deamon, resulting in potential denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-21-155?
The severity of FG-IR-21-155 is classified as critical due to its potential for denial of service.
How do I fix FG-IR-21-155?
To fix FG-IR-21-155, update your affected Fortinet devices to the latest firmware version provided by Fortinet.
Who is affected by FG-IR-21-155?
FG-IR-21-155 affects users of FortiOS, FortiProxy, FortiSwitch, FortiRecorder, and FortiVoice products.
What type of vulnerability is FG-IR-21-155?
FG-IR-21-155 is an integer overflow or wraparound vulnerability identified by CWE-190.
Can FG-IR-21-155 be exploited remotely?
Yes, FG-IR-21-155 can be exploited by an unauthenticated and network adjacent attacker.