Use-after-free in FortiAnalyzer and FortiManager - CVE-2021-32589

 

Use-after-free in FortiAnalyzer and FortiManager - CVE-2021-32589

Published: July 19, 2021


Vulnerability identifier: #VU54975
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-32589
CWE-ID: CWE-416
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise vulnerable system.

The vulnerability exists due to a use-after-free error within the fgfmsd daemon. A remote non-authenticated attacker can send a specially crafted request to port 541/tcp (IPv4) or 542/tcp (IPv6), trigger a use-after-free error and execute arbitrary code on the system with root privileges.

Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.


Affected software

FortiAnalyzer
FortiManager

How to mitigate CVE-2021-32589

Install updates from vendor's website.

FortiAnalyzer - addressed in versions 5.6.11, 6.0.11, 6.2.8, 6.4.6, 7.0.1
FortiManager - addressed in versions 5.6.11, 6.0.11, 6.2.8, 6.4.6, 7.0.1

External References

Related Security Bulletins