#VU81928 Use-after-free in FortiOS and FortiProxy - CVE-2023-41675
Published: October 11, 2023
FortiOS
FortiProxy
Fortinet, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a use-after-free error within the Web proxy process. A remote non-authenticated attacker can send multiple specially crafted packets to the device and perform a denial of service (DoS) attack.
Successful exploitation of the vulnerability requires that SSL deep packet inspection is enabled.