FG-IR-26-161: Stack buffer overflow in WAD
A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS explicit proxy may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-26-161?
FG-IR-26-161 has a medium severity rating of 5.1.
How do I fix FG-IR-26-161?
To remediate FG-IR-26-161, ensure that your FortiOS version is updated to a non-vulnerable release.
What types of attacks does FG-IR-26-161 allow?
FG-IR-26-161 allows unauthenticated attackers to execute arbitrary code or commands through crafted sockets.
Is authentication required to exploit FG-IR-26-161?
No, FG-IR-26-161 can be exploited by unauthenticated attackers.
What conditions are necessary for FG-IR-26-161 to be exploited?
FG-IR-26-161 requires the explicit proxy to be configured with Kerberos and allows bypass of stack protection and ASLR.