FG-IR-26-137: DoS due to unsafe function in signal handler
A use of potentially Dangerous Function vulnerability [CWE-676] in FortiAnalyzer and FortiManager API may allow an authenticated attacker to cause a system hang via multiple specially crafted HTTP requests causing crashes. This happens if internal locks are aligned, which is out of control of the attacker.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-26-137?
FG-IR-26-137 has a high severity as it allows an authenticated attacker to cause a denial of service by exploiting a vulnerable function.
How do I fix FG-IR-26-137?
To remediate FG-IR-26-137, upgrade FortiAnalyzer and FortiManager to version 7.6.5 or 7.4.9, depending on the current version.
Which versions of FortiAnalyzer are affected by FG-IR-26-137?
FortiAnalyzer versions 7.6.0 through 7.6.4 and 7.4.0 through 7.4.8 are affected by FG-IR-26-137.
Which versions of FortiManager are affected by FG-IR-26-137?
FortiManager versions 7.6.0 through 7.6.4 and 7.4.0 through 7.4.8 are affected by FG-IR-26-137.
What type of attack does FG-IR-26-137 enable?
FG-IR-26-137 enables a denial of service attack by allowing multiple specially crafted HTTP requests to crash the system.