A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.com/psirt/FG-IR-23-095 |
![]() ![]() |
History
Tue, 22 Oct 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-22T20:45:18.608Z
Reserved: 2023-04-03T08:47:30.452Z
Link: CVE-2023-29178

Updated: 2024-08-02T14:00:15.896Z

Status : Modified
Published: 2023-06-13T09:15:17.077
Modified: 2024-11-21T07:56:39.910
Link: CVE-2023-29178

No data.